Tavve zoneranger User Manual page 333

Table of Contents

Advertisement

rgvi add-route
specified OpenVPN client address.
The route manager within the RGVI service maintains a persistent list of subnets and individual
IP addresses that correspond to DMZ devices, and therefore, should be routed to an OpenVPN
client address. The
individual IP addresses to this list. When an OpenVPN client address connects to the RGVI
service, the RGVI service sends the routes that are configured for that client address.
Important Note: The set or host/subnet addresses to be intercepted by an RGVI client is
pushed to the RGVI client at the point where the client connects with the Ranger Gateway, and
cannot be modified after the connection is established. As a result, whenever the set of
host/subnet addresses to be intercepted by a client is modified on the Ranger Gateway, it will be
necessary to restart any affected clients.
Each parameter after the add-route subcommand name can either be a specific IP address, or a
subnet description. Any of the following formats can be used to describe a subnet:
rgvi remove-route < client-address > < subnet> [< subnet> ...]
<client-address>
routes.
subnet
address.
rgvi remove-route
from the specified OpenVPN client address. If the RGVI service is enabled and the OpenVPN
client address is already connected, the OpenVPN client address must disconnect and reconnect
to the RGI service to receive an updated route list.
rgvi list-routes [< client-address >]
<client-address>
routes (optional).
rgvi list-routes
routes of the specified OpenVPN client address.
rgvi clear-routes [< client-address >] [-f]
<client-address>
[-f]
list.
rgvi clear-routes
address.
rgvi config [ item [ value ]]
rgvi config
vice.
The configuration items associated with the RGVI service are:
ZoneRanger 5.5 User's Guide
subcommand adds one or more subnets or individual IP addresses to the
rgvi add-route
10.1.10.*
10.1.10.[0-255]
10.1.10.0/255.255.255.0
indicates the set of OpenVPN client addresses to which to remove
indicates the subnet or individual IP address to remove from the OpenVPN client
subcommand removes one or more subnets or individual IP addresses
indicates the set of OpenVPN client addresses for which to display
subcommand lists all routes for each OpenVPN client address or only the
indicates the set of OpenVPN client addresses for which to clear
routes.
skips the prompt for user confirmation before clearing the OpenVPN client address
subcommand removes all routes from the specified OpenVPN client
can be used display or modify configuration items associated with the RGVI ser-
subcommand can be used to add one or more subnets or
333

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents