Tavve zoneranger User Manual page 323

Table of Contents

Advertisement

The logic for merging is similar to the logic for adding a single rule. If the input configuration
already contains a rule with the matching
be merged, the existing rule will be replaced. Otherwise the new rule is added. One way in which
the
portMap merge
subcommand replaces an existing rule, the existing rule is removed, and the rule that replaces it is
added to the end of the configuration. As a result, the
used to rearrange the order of rules within a configuration. If a file containing a set of rules is
merged onto a portMap table configuration, the merged rules will appear in the resulting
configuration in the same order they appear in the merge file.
The
portMap merge
specified text file. If no input file is specified, the active portMap table is used. If no output file is
specified, the resulting configuration is automatically copied to the active portMap table. If the
output file is specified, the resulting configuration is written to the specified file and the active
portMap table is unchanged.
portMap list [–in input_file ]
indicates the name of the input file containing portMap information
-in
portMap list
The
portMap list
text file. If no input file is specified, the active portMap table is used. Otherwise, the specified input
file is used.
portMap clear [-f]
portMap clear
is executed, the user is prompted to confirm that the active portMap table should be cleared.
clear
If the response is "y" or "yes" (case is ignored), the active portMap table will be cleared. Otherwise
the active portMap table will be unchanged. If the -f option is specified, the user is not prompted.
portMap config [ item [ value ]]
The configuration items associated with the portMap table are:
Item
log_level
port_map_cache_size
portMap config
table.
If no item or value is specified, the values of all configuration items are listed. If an item is specified
with no value, the current value of the specified configuration item is displayed. If an item and a
value are specified, the value of the specific configuration item is set to the specified value.
portMap test < src-address > < dest-address > < transport > < rg-port >
src-address
dest-address
transport
ZoneRanger 5.5 User's Guide
subcommand differs from the add subcommand is that when the merge
subcommand can read input from the active portMap table, or from a
can be used to list all rules in a configuration.
subcommand can read input from the active portMap table, or from a specified
can be used to remove all rules from the active portMap table. When
Value
Determines the level of logging for the
portMap service – values: none, short ,
full.
Determines the maximum number of entries
in the cache. Valid values are positive
integers in the range 0-10000. The default
value is 1000
can be used to display or modify configuration items associated with the portMap
indicates the source IP address of the incoming request.
indicates the destination IP address of the managed device
specifies the protocol of TCP, UDP or ICMP
and
src-address ,
dest-address
portConfig merge
Default is none.
to one of the rules to
subcommand can be
portMap
323

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents