Download Print this page
Alcatel-Lucent OmniAccess 5510 ADSL Reference Manual
Alcatel-Lucent OmniAccess 5510 ADSL Reference Manual

Alcatel-Lucent OmniAccess 5510 ADSL Reference Manual

Unified services gateway
Hide thumbs Also See for OmniAccess 5510 ADSL:

Advertisement

Quick Links

OmniAccess 5510 ADSL
Unified Services Gateway
CLI Command Reference Guide
1
2
Release 2.3.2
Notes on numbered items on banner & legal pages
1
Manu26801 West Agoura Road
Calabasas, CA 91301
(818) 880-3500
FAX (818) 880-3505
support@ind.alcatel.com
Beta
US Customer Support—(800) 995-2696
International Customer Support—(818) 878-4507
Internet—service.esd.alcatel-lucent.com
Website: www.alcatel-lucent.com
Part No: 060286-00, Rev A

Advertisement

loading
Need help?

Need help?

Do you have a question about the OmniAccess 5510 ADSL and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Alcatel-Lucent OmniAccess 5510 ADSL

  • Page 1 For final production, import color definitions from \\daldoc01\docteam\templates\framemaker\book-template\color-defs\ production-colors.fm. OmniAccess 5510 ADSL Unified Services Gateway CLI Command Reference Guide Release 2.3.2 Notes on numbered items on banner & legal pages Manu26801 West Agoura Road Calabasas, CA 91301 (818) 880-3500 FAX (818) 880-3505 support@ind.alcatel.com...
  • Page 2 In no event shall Alcatel-Lucent be liable for any indirect, special, consequential, or incidental damages, including, without limitation, lost profits or loss or damage to data arising out of the use or inability to use this manual, even if Alcatel-Lucent have been advised of the possibility of such damages.
  • Page 3: Table Of Contents

    Table of Contents Preface......................1 About This Guide ........................1 Audience ........................... 1 Organization..........................2 Document Conventions......................6 Obtaining Documentation......................7 Reference Publications ......................7 Obtaining Technical Assistance ....................8 Documentation Feedback ......................8 Part 1: Introduction 2 Using the Command Line Interface ............11 Overview...........................
  • Page 4 delete user ..........................53 ............................54 enable secret........................... 55 hostname ..........................55 http ............................56 https ............................56 line console baudrate ......................57 line console exec-timeout......................57 line vty exec-timeout ....................... 58 list config-files.......................... 58 load config-file ......................... 59 logging buffered ........................
  • Page 5 no radius-server ........................68 no radius-server auth-port....................... 69 no radius-server deadtime ...................... 69 no radius-server key........................ 69 no radius-server retransmit ..................... 69 no radius-server timeout ......................69 no service timestamps log....................... 69 no snmp agent ........................69 no snmp-server access ......................
  • Page 6 show aaa-tacacs ........................91 show aaa-users........................91 show access-server status...................... 92 show config-file ........................92 show chassis........................... 94 show clock..........................95 show inband sessions ......................95 show logging ........................... 96 show logging priority ....................... 97 show logging string ......................... 98 show logging tag ........................
  • Page 7 traceroute ..........................125 username password......................126 write erase..........................126 4 Virtual Router Redundancy Protocol............127 debug vrrp control ......................... 128 debug vrrp management ....................... 128 interface ..........................129 no vrrp group-id........................129 no vrrp group-id IP ........................ 129 no vrrp group-ID ip ip-address secondary................
  • Page 8 6 Switching on L2 Ports................153 clear lan counters........................154 clear mac-address-table dynamic ..................154 duplex............................ 155 interface switchport ....................... 155 duplex..........................155 shutdown.......................... 155 no speed ..........................156 no switchport access vlan ..................... 156 no switchport hybrid native vlan .................... 156 no switchport mode .......................
  • Page 9 Part 3: WAN Interfaces and Protocols 9 ADSL (Asymmetric Digital Subscriber Line)..........179 clear counters........................180 dsl operating-mode ....................... 180 encapsulation pppoe ......................181 interface atm ......................... 182 address..........................182 no encapsulation ........................183 no pppoe service-name......................183 pvc............................ 183 shutdown.......................... 183 pppoe service-name......................
  • Page 10 ppp authentication client-username ..................196 ppp authentication password ....................196 ppp authentication username....................197 ppp ipcp address accept-local....................197 ppp ipcp address accept-peer....................198 ppp ipcp address pool local....................198 ppp ipcp negotiate......................... 199 ppp lcp echo-interval ......................199 ppp lcp negotiate........................
  • Page 11 show match-list ........................231 show rule..........................232 Part 5: Routing Protocols 12 Protocol Independent Features..............235 access-list (extended) ......................236 access-list (standard) ......................237 clear ip route ......................... 238 default-metric ........................238 distance..........................239 distance bgp.......................... 240 distance ospf ......................... 241 distribute-list ..........................
  • Page 12 metric-type........................268 origin..........................269 set weight ..........................269 show access-lists ........................270 show ip access-lists ......................271 show ip as-path-access-list ....................271 show ip community-list ......................272 show ip prefix-list........................272 show ip protocols ........................273 show ip route......................... 275 show route-map ........................
  • Page 13 passive-interface ........................293 redistribute ..........................294 router rip..........................295 show ip protocols ........................295 show ip rip database ......................297 show ip rip interfaces ......................298 show ip rip peers ........................299 show ip rip statistics ......................300 show key-chain ........................
  • Page 14 neighbor description......................325 neighbor distribute-list ......................327 neighbor ebgp-multihop ......................328 neighbor filter-list........................328 neighbor local-as........................329 neighbor maximum-prefix...................... 330 neighbor next-hop-self ......................331 neighbor peer-group (adding members) ................331 neighbor peer-group (creating) ..................... 332 neighbor prefix-list......................... 332 neighbor remote-as .......................
  • Page 15 area stub ..........................366 area virtual-link........................367 auto-cost ..........................368 clear ip ospf........................... 368 compatible RFC1583 ......................369 default-information originate....................370 default-metric ........................371 distance..........................372 distance ospf ......................... 373 ip ospf authentication ......................374 ip ospf authentication-key ..................... 374 ip ospf cost ..........................
  • Page 16 show ip ospf route ......................... 408 show ip ospf summary-address .................... 409 show ip ospf virtual-links ....................... 410 summary-address ......................... 411 timers lsa-group-pacing......................412 timers spf..........................413 write ospf..........................414 16 Multicast Routing ..................415 PIM Configuration Commands ....................416 clear ip pim neighbor......................
  • Page 17 show ip mroute........................438 show ip multicast traffic ......................439 17 Policy Based Routing.................441 clear ip-policy statistics ......................442 ip-policy ..........................442 ip-policy <ip-policy name>..................... 444 no ip-policy ..........................444 no ip-policy <ip-policy name>....................444 no rule ........................... 444 show ip-policy........................
  • Page 18 Part 6: Network Security 19 Network Address Translation..............471 Source Nat (SNAT) Configuration Commands ..............472 source-nat ..........................472 source-nat host ........................473 source-nat pool ........................474 source-nat port-range......................475 source-nat static........................476 Destination NAT (DNAT) Configuration Commands ............. 477 destination-nat........................477 port ............................
  • Page 19 stateless ..........................497 Network Attack Prevention Configuration Commands ............498 all............................498 attack............................. 498 change ..........................499 clear firewall session session-id.................... 500 default ........................... 501 default timeout........................503 firewall ........................... 503 firewall policy {in|out}......................504 icmp-block-trace-route ......................504 icmp-dest-unrch-storm ......................505 icmp-ip-address-sweep ......................
  • Page 20 ...................... 544 NOE ALG Configuration Commands ..................545 clear firewall alg noe statistics....................545 clear firewall alg noe subaddress-mapping................545 match service alcatel-tftp ...................... 546 nat-ip reserve-port-range ...................... 547 show firewall alg noe debug-counters................... 547 show firewall alg noe statistics ....................
  • Page 21 21 IP Security - Virtual Private Network ............551 authentication........................552 clear crypto ipsec counters ....................552 clear crypto ipsec sa ......................553 crypto ca cert......................... 553 crypto ca identity ........................554 crypto certificate-database refresh..................554 crypto certificate-request export.................... 555 crypto certificate-request generate key-name...............
  • Page 22 no lifetime seconds ....................... 575 no match ..........................576 no peer ..........................576 no pfs ............................ 576 no proposal ........................... 576 no transform-set ........................576 no crypto ipsec transform-set....................577 peer ............................577 peer-ca ..........................578 peer-cert..........................578 peer-id ........................... 579 ............................
  • Page 23 no tunnel destination ......................605 no tunnel source........................605 ............................606 show crypto ipsec profile....................... 607 shutdown..........................608 transform-set ......................... 608 tunnel destination ........................609 tunnel source......................... 609 22 Intrusion Detection/Intrusion Prevention System ........611 clear firewall intrusion snort statistics..................612 clear firewall intrusion snort statistics preprocessor..............
  • Page 24 gre-keep-alive-interval...................... 636 no gre-keep-alive-max-tries ....................636 shutdown.......................... 636 no tunnel destination ......................637 no tunnel source........................637 shutdown..........................637 tunnel destination ........................637 tunnel df-bit ........................... 638 tunnel source......................... 638 tunnel vrf ..........................639 Part 7: Telephony Services 24 Telephony Services..................643 clear telephony-active-calls....................
  • Page 25 Part 8: Quality of Service 25 Quality of Service ..................669 auto qos diff-serv........................670 auto qos template........................670 auto qos voip......................... 671 bandwidth..........................671 class ............................672 class-map..........................673 clear queuing statistics......................674 description..........................674 fair-queue ..........................675 network-control........................676 no auto qos diff-serv......................
  • Page 26 show class-map ........................695 show policy-map ........................696 show random-detect-defaults....................697 show service-policy ....................... 698 show qos config ........................699 show qos running-config ....................... 700 show queuing interface ......................701 show queuing statistics ......................702 tunnel ............................ 703 tunnel bandwidth ........................
  • Page 27 no ip dhcp option ntp server....................727 no ip dhcp option routers....................... 727 no ip dhcp option subnet-mask ..................... 727 no ip dhcp option tftp-server....................727 no ip dhcp option time-offset ....................727 no option bootfile-name......................727 no option dns-server ......................
  • Page 28 host............................ 748 ip host-max-age ........................748 ip name-server ........................749 no ip domain-list ........................750 no ip domain-lookup......................750 no ip domain-name ....................... 750 no ip host..........................750 no ip host-max-age ....................... 750 no ip name-server ......................... 750 nslookup..........................751 show hosts ..........................
  • Page 29: Preface

    UIDE This guide explains the syntax of the various commands needed to configure different services available in the OmniAccess 5510 ADSL Annex A/ Annex B) Unified Services Gateway (OmniAccess 5510-AA/AB USG). It focuses on accessing OmniAccess 5510-AA/AB USG by using the Command Line Interface (CLI).
  • Page 30: Organization

    “Spanning Tree Protocol” details the VLAN commands in switching. Chapter 8 “Integrated Routing and Bridging” covers the commands used to configure Integrated Routing and Bridging (IRB) on OmniAccess 5510-AA/AB USG. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 31 Virtual Routing and Forwarding Customer Edge (VRF-CE) on the OmniAccess 5510-AA/AB USG. VRF-CE is a feature that enables a service provider to support two or more VPNs, where IP addresses can be overlapped among the VPNs. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 32 Chapter 25 “Quality of Service” provides the configuration commands for QoS. It includes CLI commands for configuring policing, shaping, queueing network traffic, auto Qos, etc. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 33 X - L ICENSE ANAGER This part consists of Chapter 30 “License Manager” documents the commands on how to install, view and take back up of license files. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 34: Document Conventions

    A note contains helpful suggestions or information that may be easily overlooked. Caution: Indicates a situation where the reader needs to be careful. Failure to observe the cautionary note could result in equipment damage or loss of data. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 35: Obtaining Documentation

    Warning: Warning is used in similar cases as caution. This also indicates a situation where the reader needs to pay extra attention to avoid hazardous situations. BTAINING OCUMENTATION Alcatel-Lucent provides several ways to obtain technical assistance and other technical resources. Documents can be downloaded from our support site service.esd.alcatel-lucent.com. EFERENCE...
  • Page 36: Obtaining Technical Assistance

    OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide BTAINING ECHNICAL SSISTANCE For all customers, partners, resellers, and distributors who hold valid Alcatel- Lucent service contracts, the Alcatel-Lucent Technical Support Team provides 24- hour-a-day, technical support services online and over the phone. Alcatel-Lucent...
  • Page 37: Part 1 Introduction

    To switch to the beta version, import color def’ns from beta-colors.fm Part 1 Introduction Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 38 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 39: Using The Command Line Interface

    OmniAccess 5510-AA/AB USG, monitoring and troubleshooting the system, enabling network connectivity, and verifying the system hardware. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 40: Introduction To Cli Modes

    From the configuration modes, you can enter configuration sub-modes. The sub- configuration modes are used for the configuration of specific features within the scope of a given configuration mode. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 41 The command “top” is used to jump to configuration mode from which ever mode you are in. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide...
  • Page 42 Set terminal line parameters service Show running system information show Open a SSH connection Open a telnet connection telnet Set terminal line parameters terminal Trace route to destination traceroute Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 43 Turn off privileged commands.Exits from disable the SUM to the UM mode. Erase a filesystem erase Exit from current mode exit Description of the interactive help help system Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 44 Open a telnet connection telnet Set terminal line parameters terminal Trace route to destination traceroute Disable debugging functions undebug Write running configuration to memory, write network, or terminal Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 45 Customize services customized-service Debugging functions (see also debug 'undebug') Modify enable secret parameters enable Exit from configure mode Firewall configuration mode firewall GRE Keep Alive interval gre-keep-alive-interval Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 46 Spanning-tree configurations spanning-tree SSH service Modify TACACS+ query parameters tacacs-server telephony keyword telephony Telnet service telnet To provide TFTP service for file requests tftp-server Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 47 Define/modify a time range object time-range Enter top level configuration mode Define/modify transparent-forward policy transparent-forward Debugging functions (see also undebug 'undebug') Go up one mode Establish user name authentication username Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 48 The following command configures a loopback interface: ALU(config)# interface loopback 1 ALU(config-if loopback1)# To exit the ICM and return to the CM, enter the Exit command. ALU(config-if FastEthernet0)# exit ALU(config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 49 To exit from the S-ICM and return to the ICM, use the Exit command. To end your configuration session and return to SUM mode, press Ctrl-Z or enter the End command. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 50 SUM mode. You can use the Exit command in any configuration mode to return to the previous configuration mode. XAMPLE ALU# configure Enter configuration commands, one per line. End with CNTL/Z. ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# ^Z Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 51 ALU(config-if FastEthernet0)# top ALU(config)# NITIAL ETUP Whenever the system configuration is empty, you are automatically entered into the initial setup program, which takes you through the basic configuration steps. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 52: Using The Command Line Interface

    Disables tab completion no service completion tab-complete XAMPLE ALU(config)# service completion spacebar-complete ALU(config)# no service completion spacebar-complete ALU(config)# service completion tab-complete ALU(config)# no service completion tab-complete Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 53 This type of Help is called the Word Help. XAMPLE ALU(config)# show i? ** PRIVILEGE COMMANDS ** inband inband interfaces Display information for all interfaces internal Internal info IP information ip-policy ip-policy keyword IPX protocol Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 54 OSPF information PIM information protocols IP routing protocol process parameters and statistics IP RIP show commands route IP routing table traffic IP Traffic Statistics VPN Routing/Forwarding instance information Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 55 When you enter a partial command (part of a command) and press the Enter key, the CLI executes the best matched command. XAMPLE ALU(config)# sh ip int br Interface IP Address Status Protocol FastEthernet0 unassigned administratively down down Tunnel0 10.91.1.146 down Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 56 Ctrl-I Complete command. History This gives the list of all commands entered in the present session, with a maximum limit of 2000 commands. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 57 Esc, L Changes the letters from the cursor to the end of the word to lowercase. Esc, U Capitalizes letters from the cursor to the end of the word. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 58 16: interface switchport 2 17: interface switchport 1 18: interface switchport 0 19: service completion spacebar-complete 20: no service completion spacebar-complete 21: no service completion 22: show history Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 59: Configuring Interfaces

    MTU (Maximum Transmission Unit) size. IP C NTERFACE ONFIGURATION Command (in ICM) Description Assigns an IP address and subnet mask ip address {<ip-address to the interface. subnet-mask>|<ip-address/ prefix-length>} Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 60 0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 61 This command displays information show ip interface brief about IP interfaces only. XAMPLE ALU(config)# show ip interface brief Interface IP Address Status Protocol FastEthernet0 unassigned administratively down down Loopback1 10.10.10.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 62 This is entered in the Interface Configuration no shutdown Mode. This command administratively brings up the interface. XAMPLE ALU(config-if FastEthernet0)# shutdown ALU(config-if FastEthernet0)# no shutdown Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 63 Received 7 broadcasts, 0 runts, 0 giants 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored 0 watchdog, 0 multicast, 0 pause input 0 packets output, 0 bytes, 0 underruns Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 64 0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 65: System Configuration And Monitoring

    For more detailed information on using and configuring OmniAccess 5510-AA/AB USG, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 66: Aaa Authentication Console

    This command is entered in the Configuration Mode. This command associates an already configured method-list with clients seeking access to Super User Mode. ARAMETERS Parameter Description Name of the method-list. method-list-name XAMPLE ALU(config)# aaa authentication enable m1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 67: Aaa Authentication Remotelogin

    This command is entered in the Configuration Mode. This command associates an already configured method-list with the web client-type (HTTP clients). ARAMETERS Parameter Description Name of the method-list. method-list-name XAMPLE ALU(config)# aaa authentication web m1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 68: Aaa Authentication Password-Prompt

    The 'no' command brings the default back into effect. ARAMETERS Parameter Description The text to be used as prompt for the prompt-text user name. XAMPLE ALU(config)# aaa authentication username-prompt u1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 69: Aaa Pre-Authentication Banner

    (You can enter a multi-lined descriptive message.) Used delimiting character to end the delimiter message. XAMPLE ALU(config)# aaa authentication banner @Only authorized access permitted.@ Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 70: Aaa Login-Success Banner

    (You can enter a multi-lined descriptive message.) Used delimiting character to end the delimiter message. XAMPLE ALU(config)# aaa authentication success-message $Login attempt successfull.$ Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 71: Aaa Login-Fail Banner

    The message to be displayed after a multi-lined string failed login attempt. (You can enter a multi-lined descriptive message.) Used delimiting character to end the delimiter message. XAMPLE ALU(config)# aaa authentication fail-message $Login failed!$ Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 72: Aaa Method-List

    AAA SERVICES aaa services ESCRIPTION This command is entered in the Configuration Mode. This command is used to enable the AAA services. ARAMETERS None. XAMPLE ALU(config)# aaa services Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 73: Aaa Server-Group Radius

    You cannot enter a RADIUS server group as ‘local’ or ‘enable’, as they are reserved keywords for pre-defined authentication methods. ARAMETERS Parameter Description Name of the RADIUS server group. name EFAULT ALUE None. XAMPLE ALU(config)# aaa server-group radius rad1 ALU(config-rad-grp)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 74: Aaa Server-Group Tacacs

    You cannot enter a TACACS+ server group as ‘local’ or ‘enable’, as they are reserved keywords for pre-defined authentication methods. ARAMETERS Parameter Description Name of the TACACS+ server group. name EFAULT ALUE None. XAMPLE ALU(config)# aaa server-group tacacs tac1 ALU(config-tac-grp)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 75: Clear Known_Hosts

    ESCRIPTION This command is entered in the Super User Mode or Configuration Mode. This clears the contents of the logging buffer. ARAMETERS None. XAMPLE ALU(config)# clear logging Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 76: Clear Session

    Use this paramter to set the clock timezone <zone> <sub-timezone> timezone. XAMPLE ALU(config)# clock set 11:50:01 09/29/2009 The system clock is changed. Current setting is Tue Sep 29 11:50:01 2009 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 77: Clock Synchronize

    ALU(config)# clock synchronize using ntp server 10.91.2.87 every 120 minutes This command has no output. To verify the settings, use the ‘show clock’ command described in this section. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 78: Clock Timezone

    ARAMETERS Parameter Description Specify the time zone and the sub-time <zone> <sub-timezone> zone. EFAULT ALUE GMT/UTC is the default time zone. XAMPLE ALU(config)# clock timezone asia calcutta Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 79: Copy

    Address name of remote host [10.91.2.87]? Remote Port [ Enter for default ] : Destination Path/File [running-config]? URL specification sanity OK, proceeding with copy (please wait) Copy successful Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 80: Delete All

    This command is entered in the Configuration Mode. This command is used to delete the configuration file from the config directory. ARAMETERS Parameter Description Name of the file to be deleted. file-name XAMPLE ALU(config)# delete config-file my-config Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 81: Delete Fp-Key

    Note: Enter the file name after user: keyword without any space. ARAMETERS Parameter Description Name of the file to be deleted. file-name XAMPLE ALU(config)# delete user:backup_config Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 82: Dir

    Name --------- ---- ------------- ------ drwx 3072 Sep 15 06:25 cores drwx 12288 Jun 26 06:00 lost+found -rw- 30734 Sep 13 06:46 -rw- 30664 Sep 13 06:45 test Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 83: Enable Secret

    This command is entered in the Configuration Mode. This command is used to configure the system name. By default the system name is ”ALU”. ARAMETERS Parameter Description Host name of the router. hostname XAMPLE ALU(config)# hostname ALU Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 84: Http

    This command is entered in the Configuration Mode. Use this command to enable/disable the HTTPS service. ARAMETERS Parameter Description Enable HTTPS service. enable Disable HTTPS service. disable XAMPLE ALU(config)# https enable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 85: Line Console Baudrate

    Time-out in minutes. 0-35791 Time-out in seconds. 0-60 EFAULT ALUE The default time-out is 20 minutes. XAMPLE ALU(config)# line console exec-timeout 0 ALU(config)# line console exec-timeout 45 15 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 86: Line Vty Exec-Timeout

    ARAMETERS None. XAMPLE ALU# list config-files Permission Size Date modified Name --------- ---- ------------- ------ -rw- 10464 Dec 26 15:25 my-config -rw- 10461 Dec 25 08:13 startup-config Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 87: Load Config-File

    (numerically lower) will be buffered. ARAMETERS Parameter Description Priority level. Logging buffer size. 4-1024 EFAULT ALUE By default, logging is sent to the buffer. XAMPLE ALU(config)# logging buffered priority 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 88: Logging Console

    This command is entered in the Configuration Mode. This enables logging of messages. ARAMETERS None. EFAULT ALUE By default, logging of messages is enabled. XAMPLE ALU(config)# logging on Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 89: Logging Rate-Limit

    To limit the number of messages coming from ACL's CLI plugin to 10 in a second, execute the following command: ALU(config)#logging rate-limit 10 tag cli subtag acl Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 90: Logging Rate-Limit Unique

    No preference is given to unique messages with this command. ARAMETERS None. XAMPLE ALU(config)# logging rate-limit no unique Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 91: Logging Remote

    UDP port number of the external log 0-65535 server. Priority level of the messages. EFAULT ALUE The default port is 514 and the default priority level is 7. XAMPLE ALU(config)# logging remote 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 92: Logging System

    ARAMETERS Parameter Description Denotes the maximum number of log 100-10000 messages to be stored. EFAULT ALUE By default, no watermark level is set. XAMPLE ALU(config)# logging watermark 10000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 93: Mkdir

    NO AAA AUTHENTICATION SUCCESS MESSAGE no aaa authentication success-message [<delimiter> <multi-lined string> <delimiter>] This command is entered in the Configuration Mode. The ‘no’ command removes the configured authentication success message. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 94: No Aaa Authentication Username-Prompt

    <name> This command deletes the specified RADIUS server group. You cannot delete a RADIUS server group if it is associated to any method list. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 95: No Aaa Server-Group Tacacs

    NO LINE VTY EXEC TIMEOUT no line vty exec-timeout This command is entered in the Configuration Mode. This command removes the time-out configured for SSH and Telnet CLI sessions. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 96: No Logging Buffered

    NO RADIUS SERVER no radius-server [vrf <vrf-name>] <ip-address> This command is entered in the the RADIUS Server Group Mode. This command removes the RADIUS Server from the server group. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 97: No Radius-Server Auth-Port

    This command is entered in the Configuration Mode. This command disables the date and time display in the log messages. NO SNMP AGENT no snmp agent {rocommunity|rwcommunity} This command removes read-only/read-write community string configured on the SNMP agent. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 98: No Snmp-Server Access

    SNMP trap configuration. NO SNMP TRAP ENABLE no snmp trap enable This command is entered in the Configuration Mode. This command disables sending the SNMP traps to the configured host. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 99: No Tacacs-Server

    (for all servers that do not have a server specific timeout value). NO USERNAME no username <user-name> This command is entered in the Configuration Mode. The ‘no’ command deletes the specified user account. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 100: Package Backup

    Remote Port [ Enter for default ] : Path : backup-alu-apps.oa5510.2.3.2.12.1.npm Username [Enter for none] : user1 Password : Backing up Applications package... Creating... Uploading file. This could take a while...Completed. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 101: Package Install

    Remote Port [ Enter for default ] : Path/Filename : /packages/alu-apps.oa5510.2.3.2.12.1.npm Username [Enter for none] : user1 Password : Downloading remote file. This could take a while... Verifying package... NPM v1.0 format Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 102 No : Manually run set-default at a later time Proceed? (y/[n]) : y Do you want to save config before proceeding ([y]/n) : y Building configuration... [OK] Setting Default image to 2.3.2.12.1... Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 103: Package Install Flash

    Checking for free space in User area...OK Extracting firmware image...OK Verifying and Decompressing flash images ======================================== Verifying and decompressing...OK Firmware Version : 1.7 Status Done Flash updated successfully Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 104: Package Remove

    Description Name of the package to be removed. package-name XAMPLE To remove 2.3.2.12.1 package: ALU(config)# package remove 2.3.2.12.1 Remove package 2.3.2.12.1? (y/[n]) : y Uninstalling application package 2.3.2.12.1...OK. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 105 No : Manually run set-default at a later time Proceed? (y/[n]) : y Do you want to save config before proceeding ([y]/n) : y Building configuration... [OK] Setting Default image to 2.3.2.12.1... Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 106: Ping

    Name of the host. hostname XAMPLE ALU(config)# ping 192.168.10.121 Sending 5,64-byte ICMP Echos to 192.168.10.121, timeout is 10 seconds !!!!! Success rate is 100 percent (5/5), round-trip min/avg/max = 0.124/0.191/0.356 ms Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 107: Radius-Server

    Number of seconds that OmniAccess timeout <1-1000> 5510-AA/AB USG should wait for a reply from the RADIUS server before retrying. XAMPLE ALU(config-rad-grp)# radius-server 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 108: Radius-Server Auth-Port

    The time (in minutes) that should elapse, deadtime <1-1440> before you try again to connect to a non- responding server. EFAULT ALUE The default deadtime value is 5 minutes. XAMPLE ALU(config)# radius-server deadtime 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 109: Radius-Server Key

    Number of retries after each “timeout” retransmit <1-100> interval, before giving up on the server. EFAULT ALUE The default retrasmit value is 3. XAMPLE ALU(config)# radius-server retransmit 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 110: Radius-Server Timeout

    Short description as to why the system is line being reloaded. XAMPLE ALU(config)# reload Do you really want to reboot the Chassis (y/[n])?y Do you want to save config before rebooting (y/[n])n Restarting system. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 111: Rmdir

    "write memory" can also be used to save the running configuration to the start-up configuration. ARAMETERS None. XAMPLE ALU# save running-config Saving to startup-config ... Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 112: Save Running-Config File-Name

    This command is entered in the Configuration Mode. This command is used to save the information in the log buffer. By default, the information is saved in the user:log/default.log file. ARAMETERS None. XAMPLE ALU# save logging Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 113: Save Logging File Name

    (0 -4) priorities are stored. By default, messages up to informational level (= 6) are stored. ALU# save logging priority 5 exact This saves log messages with priority equal to 5. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 114: Save Logging String

    ARAMETERS Parameter Description Name of the of the log messages to be tag-name saved. XAMPLE ALU# save logging tag cli This saves log messages originating from CLI. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 115: Service Timestamps Log

    This command is entered in the Configuration Mode. This command is used to display the date and time of the log messages. ARAMETERS None. EFAULT ALUE By default, Service timestamps log is enabled. XAMPLE ALU(config)# service timestamps log Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 116: Show Aaa

    .sorry!!!. aaa authentication console m1 aaa authentication remotelogin rad aaa authentication web rad enable password e aaa authorization disable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 117: Show Aaa-Client-Methodlist-Associations

    ARAMETERS None. XAMPLE ALU(config)# show aaa-local-users-details username recovery password 5 790649743532a8280244f482f6199744 username superadmin password 5 d41d8cd98f00b204e9800998ecf8427e Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 118: Show Aaa-Methodlists

    RADIUS Server groups configured. ARAMETERS None. XAMPLE ALU(config)# show aaa-radius aaa server-group radius rad1 radius-server 1.1.1.1 aaa server-group radius rad3 radius-server 1.1.1.1 auth-port 300 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 119: Show Aaa-Tacacs

    ARAMETERS None. XAMPLE ALU(config)# show aaa-users Session-ID UserName ClientType Remote-Address superadmin Console guest 10.91.2.87 firewall-admin TELNET 154.34.222.1 superadmin HTTP 143.23.34.12 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 120: Show Access-Server Status

    5 service timestamps log logging rate-limit 1 10 tag SWE subtag DOS logging rate-limit 1 10 tag PVSTD subtag PKT logging rate-limit 1 10 tag SWE subtag SESSION Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 121 ! Filter Policy configuration ! Dos attack configuration !Snort configuration firewall intrusion snort ! Firewall configuration ! IPSEC Policy configuration Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 122: Show Chassis

    OA5510 - OA5510 ADSL ANNEX A (active) Part number: 050503-49T Module type: 00002003 Serial number: K1582157 Revision: A04 FRU#: 902695-90 Format: 3 Base MAC: 00:e0:b1:b2:34:59 ADSL Loader version: 1.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 123: Show Clock

    This command is entered in the Super User Mode or Configuration Mode. This command displays the inband sessions. ARAMETERS None. XAMPLE ALU(config)# show inband sessions Local IP Foreign IP Protocol State 135.250.26.202:80 135.250.26.187:3763 ESTABLISHED 135.250.26.202:23 135.250.26.187:3773 ESTABLISHED Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 124: Show Logging

    2009 Feb 12 12:13:18 UTC: %AAAMgr-6-AAA: AAA services enabled by user superadmin@boot-time. 2009 Feb 12 12:13:19: %snort-5-LOG: Detection: 2009 Feb 12 12:13:19: %snort-5-LOG: Search-Method = Low-Mem Trie 2009 Feb 12 12:13:23: %AAAMgr-6-AAA: Connection with RIB MGR Succeded --More-- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 125: Show Logging Priority

    2008 Oct 13 14:13:06: %ntpdate-3-LOG: No server suitable for synchronization found The following example shows only the messages with priority 3. ALU(config)# show logging priority 3 exact 2008 Oct 13 14:13:06: %ntpdate-3-LOG: No server suitable for synchronization found Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 126: Show Logging String

    Oct 13 10:44:47: %CLI-6-LOG: A Client Logged in to the Box through SSH from 10.91.2.87 2008 Oct 13 10:45:41: %CLI-6-LOGSRV: Logging buffer size set to 128K by User:privileged user. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 127: Show Memory

    0 kB Writeback: 0 kB Mapped: 132720 kB Slab: 8064 kB CommitLimit: 128520 kB Committed_AS: 203708 kB PageTables: 1464 kB VmallocTotal: 640000 kB VmallocUsed: 44264 kB VmallocChunk: 595596 kB Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 128: Show Packages

    OSPF OSPF Protocol 2.3.2.26.1 Quality of Service 2.3.2.26.1 Routing Information Protocol 2.3.2.26.1 Routing-base Routing Infrastructure 2.3.2.26.1 SNMP SNMP-v2 support 2.3.2.26.1 Secure Shell Access 2.3.2.26.1 Security Network Security Services Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 129: Show Processes

    514 root 1440 S tm -w pm -A 515 root [vmMonitord] 516 root 2324 S pm -A 517 root 632 S /bin/sh /apps/usr/sbin/core_mover.sh 566 root 2440 S vrrpfs Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 130 NatFeature 650 root 2160 S IdsFeature 714 root 616 S /sbin/tftpd -l -u root -s /images/boot -a 0.0.0.0:60 715 root 2088 S FwcommonFeature 725 root 2028 S FilterFeature Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 131: Show Running-Config

    1 10 tag SWE subtag DOS logging rate-limit 1 10 tag PVSTD subtag PKT logging rate-limit 1 10 tag SWE subtag SESSION !VRF Configuration ! MULTICAST Configuration !NOE port reservation !--More-- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 132: Show Snmp

    None. XAMPLE ALU(config)# show snmp ! SNMP Configurations snmp trap enable snmp system contact support@alcatel-lucent.com name alu1 snmp agent rocommunity private snmp trap 1.1.1.1 v1 test 10 snmp trap 1.1.1.11 v1 test1 11 snmp-server user user123 auth MD5 passpass1 snmp-server group testgroup user123 security-model v3 snmp-server view view123 .1.3.6.1 included...
  • Page 133: Show Snmp Details

    : test System Location : [Not configured] Community-Access Community-String ---------------- ---------------- read-only read-write [Not configured] Trap-Host Trap-Port Version Trap-Community --------- --------- ------- -------------- 10.91.0.224 8001 trapcomm 10.91.0.225 notifcomm Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 134: Show Snmp Group

    SNMP groups. ARAMETERS None. XAMPLE ALU(config)# show snmp group --------------------------------------- Group Name : testgroup Security Model: v3 Security Name: user123 --------------------------------------- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 135: Show Snmp Stats

    0 Proxy drops 557 SNMP packets output 0 Too big errors 2 No such name errors 0 Bad values errors 0 General errors 557 Get Responses 0 Traps Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 136: Show Snmp User

    This command is entered in the Super User Mode or Configuration Mode. This command displays the SNMP view configuration. ARAMETERS None. XAMPLE ALU(config)# show snmp view ViewName Status MIBFamily -------- ------ --------- view123 included .1.3.6.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 137: Show Startup-Config

    1 10 tag SWE subtag DOS logging rate-limit 1 10 tag SWE subtag SESSION !VRF Configuration ! MULTICAST Configuration !NOE port reservation --More-- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 138: Show Tech-Support

    7 Note: You can save the tech-support logs to the user area or fpkey using the command “save tech-support [filename {fpkey:|user:}”. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 139: Show Version

    ARAMETERS None. XAMPLE ALU(config)# show version Alcatel-Lucent Software, Version 2.3.2, Build 26, for OmniAccess 5510 Copyright (c) 2006-2009 by Alcatel-Lucent Inc. Built on Fri Sep 25 00:04:52 IST 2009 Flash version - 1.8 SNMP AGENT snmp agent {rocommunity|rwcommunity} <community-string>...
  • Page 140: Snmp Agent Version

    ESCRIPTION This command is entered in the Configuration Mode. This command is used to disable the SNMP service. ARAMETERS None. EFAULT None XAMPLE ALU(config)# snmp disable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 141: Snmp Enable

    ESCRIPTION This command is entered in the Configuration Mode. This command is used to enable the SNMP service. ARAMETERS None. EFAULT None XAMPLE ALU(config)# snmp enable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 142: Snmp-Server Access

    XAMPLE ALU(config)# snmp-server access testgroup security-model v3 auth read read-view write write-view notify notify-view Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 143: Snmp-Server Group

    Defines the SNMP version to be security-model {v1|v2c|v3} associated with the group. XAMPLE ALU(config)# snmp-server group testgroup user123 security-model Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 144: Snmp-Server User

    This should be a minimum of 8 characters. XAMPLE ALU(config)# snmp-server user user123 auth MD5 pass123456 priv DES test123456 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 145: Snmp-Server View

    Parameter Description Contact details of the SNMP system. contact-details Physical location of the SNMP system. location Name of the SNMP system. name XAMPLE ALU(config)# snmp system contact support@alcatel-lucent.com Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 146: Snmp Trap

    This command is entered in the Configuration Mode. This command enables the agent to send the SNMP traps to the configured host. ARAMETERS None. XAMPLE ALU(config)# snmp trap enable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 147: Ssh Enable|Disable

    IP Address of the remote system. ip address Host name of the remote system. hostname The login/user name to be used. user-name SSH version number - version 1 or version {1|2} version 2. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 148: Tacacs-Server

    OmniAccess 5510-AA/AB USG and the TACACS+ server. Number of seconds that OmniAccess timeout <1-1000> 5510-AA/AB USG should wait for a reply from the TACACS+ server before retrying. XAMPLE ALU(config-tac-grp)# tacacs-server 1.1.1.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 149: Tacacs-Server Auth-Port

    The key string. string When this keyword is used, enter the encrypted format of the key. EFAULT ALUE The default key is “” (empty string). XAMPLE ALU(config)# tacacs-server key test1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 150: Tacacs-Server Timeout

    <1-1000> 5510-AA/AB USG should wait for a reply from the TACACS+ server before retrying. EFAULT ALUE The default timeout value is 5 seconds. XAMPLE ALU(config)# tacacs-server timeout 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 151: Telnet Enable|Disable

    VRF on a interface associated with the VRF. IP address of the remote host. ip address Host name of the remote host. hostname XAMPLE ALU(config)# telnet 10.91.0.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 152: Terminal Length

    This command is entered in the Configuration Mode. This command is used to set the terminal length for this session. ARAMETERS Parameter Description 0 for no pausing. Number of lines on screen. 0-512 XAMPLE ALU(config)# terminal length 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 153: Terminal Monitor

    ALU(config)# traceroute 10.91.10.178 traceroute to (10.91.10.178), 30 hops max, 38 byte packets. 10.91.0.1 (10.91.0.1) 0.700 ms 0.703 ms 0.621 ms 10.91.10.178 (10.91.10.178) 0.951 ms 0.961 ms 0.960 ms Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 154: Username Password

    The command "erase startup-config" can also be used to delete the startup- config permanently. ARAMETERS None. XAMPLE ALU(config)# write erase Are you sure you want to erase startup-config file yes/no [yes]:yes [OK] startup-config file erased. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 155: Virtual Router Redundancy Protocol

    For more detailed information on using and configuring VRRP, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 156: Debug Vrrp Control

    Parameter Description Displays all the VRRP debug messages. Displays the VRRP protocol-related debug protocol messages. Displays the VRRP management debug vrrpfs messages. XAMPLE ALU# debug vrrp management all Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 157: Interface

    NO VRRP GROUP ID PREEMPT no vrrp <1-8> preempt This command is entered in the Interface Configuration Mode. This command is used to disable pre-emption of the VRRP group. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 158: No Vrrp Group-Id Priority

    NO VRRP GROUP ID TRACK INTERFACE no vrrp <1-8> track-interface This command is entered in the Interface Configuration Mode. This command removes the tracking of the interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 159: Show Vrrp All

    Advertisement interval is 1.000 sec Preemption enabled Priority is 100 Master Router is 10.1.1.1 (local), priority is 100 Master Advertisement interval is 1.000 secs Master Down interval is 3.000 secs Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 160: Show Vrrp Interface

    Advertisement interval is 1.000 sec Preemption enabled Priority is 100 Master Router is 10.1.1.1 (local), priority is 100 Master Advertisement interval is 1.000 secs Master Down interval is 3.000 secs Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 161: Vrrp Group-Id Authentication Text

    Denotes the authentication password used. A password maximum of 8 characters are allowed. EFAULT ALUE By default, no authentication is set on the VRRP group. XAMPLE ALU(config-if FastEthernet0)# vrrp 7 authentication text net123 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 162: Vrrp Group-Id Description

    Description Specifies the group number. It is in the range 1 - 8. Primary IP address of the VRRP group. ip-address XAMPLE ALU(config-if FastEthernet0)# vrrp 5 ip 10.91.0.8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 163: Vrrp Group-Id Ip Ip-Address Secondary

    ARAMETERS Parameter Description Specifies the group number. It is in the range 1 - 8. EFAULT ALUE Pre-emption is enabled by default. XAMPLE ALU(config-if FastEthernet0)# vrrp 7 preempt Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 164: Vrrp Group-Id Priority Value

    Specifies the group number. It is in the range 1 - 8. Refers to the priority level which ranges between value 1- 254. EFAULT ALUE By default, priority is 100 XAMPLE ALU(config-if FastEthernet0)# vrrp 7 priority 104 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 165: Vrrp Group-Id Timers Advertise

    50-999 by using the keyword ‘msec’. Its in the range: 50 - 999 milliseconds. EFAULT ALUE Default is one second. XAMPLE ALU(config-if FastEthernet0)# vrrp 7 timers advertise 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 166: Vrrp Group-Id Timers Learn

    Specifies the group number. It is in the range 1 - 8. EFAULT ALUE By default, the master advertisement learning interval is disabled. XAMPLE ALU(config-if FastEthernet0)# vrrp 7 timers learn Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 167: Vrrp Group-Id Track-Interface

    Parameter Description Specifies the group number. It is in the range 1 - 8. Interface name. interface-name EFAULT ALUE None. XAMPLE ALU(config-if FastEthernet0)# vrrp group track-interface atm 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 168 Left running head: Chapter name (automatic) Virtual Router Redundancy Protocol Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 169: Part 2 Lan Interfaces And Configuration

    To switch to the beta version, import color def’ns from beta-colors.fm Part 2 LAN Interfaces and Configuration Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of Beta...
  • Page 170 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 171: Fast Ethernet Interface Commands

    The commands are described in alphabetical order. For more detailed information about using and configuring Fast Ethernet interface, refer OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 172: Clear Counters

    Fast Ethernet interface. ARAMETERS Parameter Description This command clears the counters on port the Fast Ethernet interface. XAMPLE ALU(config)# clear counters FastEthernet 0 Clear counters on this interface [confirm]y ALU(config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 173: Duplex

    This command is entered in the Configuration Mode. This command allows you to configure Fast Ethernet interface. ARAMETERS Parameter Description Port number of the interface. port EFAULT ALUE None. XAMPLE ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 174: Interface

    Port number of the interface and the port:subinterface-id sub-interface number. XAMPLE The following command configures a sub-interface on the Fast Ethernet interface: ALU(config)# interface FastEthernet 0:1 ALU(config-subif FastEthernet0:1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 175: Ip Address

    ARAMETERS Parameter Description Size of packet in bytes in the range 64 - 1500. 64-1500 EFAULT ALUE The default MTU is 1500 bytes. XAMPLE ALU(config-if FastEthernet0)# mtu 1000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 176: No Duplex

    MTU is 1500. NO SPEED no speed This command is entered in the Interface Configuration Mode. This command resets the interface speed to its default value which is 1000. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 177: Show

    0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 multicast 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 178 0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 179: Show Interfaces

    0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 multicast 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 180: Speed

    This command is entered in the Interface Configuration Mode. This command configures the interface speed. ARAMETERS None. EFAULT ALUE The default speed is “auto”. XAMPLE ALU(config-if FastEthernet0)# speed 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 181: Switching On L2 Ports

    For more detailed information about using and configuring switching on the L2 ports, refer OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 182: Clear Lan Counters

    ARAMETERS Parameter Description User configured VLAN-ID or 1 if it is a 1-4094 default VLAN-ID. XAMPLE ALU# clear mac-address-table Dynamic Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 183: Duplex

    The default duplex mode is auto. NO SHUTDOWN no shutdown This command is entered in the Interface Configuration Mode. This command is used to administratively bring up the interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 184: No Speed

    <2-4094> <2-4094> This command is entered in the Interface Configuration Mode. This command deletes the range of trunk VLANs configured on the interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 185: Show Interfaces

    0 babbles, 0 late collision, 0 deferred 0 Out multicast, 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer failures, 0 output buffers swapped out Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 186: Show Lan Counters

    0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 lost carrier, 0 no carrier 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 187: Show Mac-Address-Table

    Dynamic 0008.a16b.6597 switchport1 Dynamic 0008.a170.59ea switchport1 Dynamic 0008.a170.5e1d switchport1 Dynamic 0008.a170.5e21 switchport1 Dynamic 0008.a177.fecc switchport1 Dynamic 0008.a177.fece switchport1 Dynamic 0008.a178.4b19 switchport1 Dynamic 0008.a17b.ba3d switchport1 Dynamic 000c.f1c3.85a9 switchport1 Dynamic Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 188: Show Vlan

    SHUTDOWN shutdown ESCRIPTION This command is entered in the Interface Configuration Mode. This command is used to administratively bring down the interface. ARAMETERS None. XAMPLE ALU(config-if switchport0)# shutdown Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 189: Speed

    This command is entered in the Interface Configuration Mode. This command is used to configure VLANs for access mode in the range 2-4094. ARAMETERS Parameter Description The VLAN ID configured. 2-4094 XAMPLE ALU(config-if switchport0)# switchport access vlan 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 190: Switchport Hybrid Native Vlan

    Use this keyword to configure the L2 interface trunk in the Trunk mode. Use this keyword to configure the L2 interface hybrid in the Hybrid mode. XAMPLE ALU(config-if switchport0)# switchport mode trunk Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 191: Switchport Trunk Allowed Vlan

    VLANs in trunk mode under a switchport interface. ARAMETERS Parameter Description Low Vlan ID and the high Vlan ID. <2-4094> <2-4094> XAMPLE ALU(config-if switchport0)# switchport trunk allowed vlan range 30 40 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 192 Left running head: Chapter name (automatic) Switching on L2 Ports Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 193: Spanning Tree Protocol

    The commands are described in alphabetical order. For more detailed information about using and configuring spanning tree, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 194: No Spanning-Tree Enable

    128. NO SPANNING TREE SPANNING DISABLED no spanning-tree spanning-disabled This command is entered in the Interface Configuration Mode. The “no” command enables the spanning-tree on a specified interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 195: Show Spanning-Tree

    Designated bridge has priority 32768, address 00.11.8b.00.27.13 Designated port Id is 128.14 path cost 0 Timers: message age 1, forward delay 0, hold 0 BPDU: sent 40, received 84 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 196: Show Spanning-Tree Brief

    Cost Bridge ID Port ID -------------- ------- ---- ---- ---- ----------------- ------- switchport0 128.9 00.00.00.00.00.02 128.9 switchport1 128.10 00.11.8b.00.27.13 128.12 switchport2 128.11 00.00.00.00.00.02 128.11 switchport3 128.12 00.11.8b.00.27.13 128.14 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 197: Show Spanning-Tree Summary

    None. XAMPLE ALU(config)# show spanning-tree summary Name Blocking Listening Learning Forwarding STP Active --------------- -------- --------- -------- ---------- -------- VLAN1 --------------- -------- --------- -------- ---------- -------- 1 VLANs Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 198: Spanning-Tree

    The spanning tree cost is configured on a per port basis. ARAMETERS Parameter Description Spanning tree port cost. 1-65535 EFAULT ALUE Default value: 4 XAMPLE ALU(config-if switchport1)# spanning-tree cost 1000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 199: Spanning-Tree Enable Fwd-Time/Hello-Time/Max-Age/Priority

    The following examples configures the spanning tree forward-time to 30, hello- time to 10 and maximum-age to 40: ALU(config)# spanning-tree enable forward-time 30 ALU(config)# spanning-tree enable hello-time 10 ALU(config)# spanning-tree enable max-age 40 ALU(config)# spanning-tree enable priority 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 200: Spanning-Tree Port-Priority

    This command is entered in the Interface Configuration Mode. This disables the spanning tree on a specific interface. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config-if switchport1)# spanning-tree spanning-disabled Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 201: Integrated Routing And Bridging

    For more detailed information on using and configuring IRB refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 202: Irb Cli Commands

    VLAN. ARAMETERS Parameter Description VLAN-ID configured on the interface. 1-4094 Note: Vlan ID = 1 can also be configured for IRB. XAMPLE ALU(config)# interface vlan 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 203: Show Interfaces Vlan

    2035879 packets output, 0 bytes, 0 underruns 0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 lost carrier, 0 no carrier, 0 pause output Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 204 Left running head: Chapter name (automatic) Integrated Routing and Bridging Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 205: Part 3 Wan Interfaces And Protocols

    To switch to the beta version, import color def’ns from beta-colors.fm Part 3 WAN Interfaces and Protocols Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of Beta...
  • Page 206 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 207: Adsl (Asymmetric Digital Subscriber Line)

    Within each of these sections the commands are described in alphabetical order. For more detailed information about using and configuring ATM interface, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 208: Clear Counters

    DSLAM. Configures the ATM interface to train in ansi-dmt the ANSI T1.413 Issue II mode. Configures the ATM interface to train in etsi the ETSI mode. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 209: Encapsulation Pppoe

    This command is entered in the Interface Configuration Mode to set PPPoE encapsulation on the interface. The interface comes up in the ‘PPPoE client’ mode. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config-if atm0)# encapsulation pppoe Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 210: Interface Atm

    IP address and subnet mask on an ATM interface. ARAMETERS Parameter Description IP address with its subnet mask or prefix {<ip-address subnet-mask>|<ip- length. address/prefix-length> EFAULT ALUE None. XAMPLE ALU(config-if atm0)# ip address 192.168.3.4/24 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 211: No Encapsulation

    If the operating-mode configured on the ATM interface is other than ‘auto’, and does not match the DSLAM's operating-mode, the interface will not come up. ARAMETERS None. XAMPLE ALU(config-if atm0)# no shutdown Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 212: Pppoe Service-Name

    This command is entered in the Interface Configuration Mode. This command is used to bring up the data channel. ARAMETERS Parameter Description VPI range. 0-255 VCI range. 32-2047 EFAULT ALUE None. XAMPLE ALU(config-if atm0)# pvc vpi 1 vci 32 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 213: Show Atm Vc

    ATU-R (DS) ATU-C (US) Attenuation(dB) Noise Margin(dB) : 21.0 28.5 Trellis Encoding : Interleave Fast Interleave Fast Bitrate (kbps) : 9084 Max attainable data rate (kbps): 25472 1407 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 214: Show Interfaces Atm

    0 output errors, 0 collisions, 0 interface resets 0 babbles, 0 late collision, 0 deferred 0 lost carrier, 0 no carrier, 0 pause output 0 output buffer copied, 0 interrupts, 0 failures Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 215: Shutdown

    Heading1 or Heading1NewPage text (automatic) shutdown SHUTDOWN shutdown ESCRIPTION This command is entered in the Interface Configuration Mode to administratively bring down the interface. ARAMETERS None. XAMPLE ALU(config-if atm0)# shutdown Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 216 Left running head: Chapter name (automatic) ADSL (Asymmetric Digital Subscriber Line) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 217: Point-To-Point Protocol Over Ethernet (Pppoe)

    PPPoE configurations as quick-start and reference information. All the commands are described in alphabetical order. For more detailed information about using and configuring the PPPoE, refer OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 218: Debug Ppp All

    PPP functionality. Displays detail level (default is 1). detail-level Enable with specific detail level. EFAULT ALUE By default, debug is disabled. XAMPLE ALU(config)# debug ppp all Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 219: Debug Ppp Echo

    Output to all possible locations. output all Output to system log. output log Output to VTY. output vty EFAULT ALUE By default, debug is disabled. XAMPLE ALU(config)# debug ppp echo Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 220: Encapsulation Pppoe

    NO PPP AUTHENTICATION CLIENT PASSWORD no ppp authentication client-password This command is entered in the Interface Configuration Mode. The “no” command deletes the configured authentication password on the client side. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 221: No Ppp Authentication Client-Username

    This command is entered in the Interface Configuration Mode. The “no” command sets the echo-interval to its default value. The default value is 10 seconds. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 222: No Ppp Lcp Max-Echo

    NO PPPOE RETRY TIMER no pppoe retry-timer This command is entered in the Interface Configuration Mode. The “no” command resets the retry-timer to its default, 10 seconds. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 223: No Pppoe Service-Name

    PPP authentication on the client side. ARAMETERS Parameter Description Denotes the password for PPP authentication. password XAMPLE ALU(config-if atm0)# ppp authentication client-password pass1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 224: Ppp Authentication Client-Username

    PPP authentication on the server side. ARAMETERS Parameter Description Denotes the password for PPP authentication. password XAMPLE ALU(config-if atm0)# ppp authentication password pass1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 225: Ppp Authentication Username

    ARAMETERS Parameter Description Denotes the user name for PPP authentication. user-name XAMPLE ALU(config-if atm0)# ppp authentication username alcatel-lucent PPP IPCP ADDRESS ACCEPT LOCAL ppp ipcp address accept-local ESCRIPTION This command is entered in the Interface Configuration mode. This command sets a flag to accept a local IP address given to it by the peer during IPCP.
  • Page 226: Ppp Ipcp Address Accept-Peer

    ALU(config-if atm0)# ppp ipcp address pool local 10.10.10.10 Note: On a PPPoE enabled interface, ‘ppp ipcp address pool local <ip-address>’ should not be configured as the interface is always in PPPoE client mode. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 227: Ppp Ipcp Negotiate

    ARAMETERS Parameter Description Denotes the interval between echo requests. 0-255 EFAULT ALUE The default value is 10 seconds. XAMPLE ALU(config-if atm0)# ppp lcp echo-interval 200 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 228: Ppp Lcp Negotiate

    0-30 requests. EFAULT ALUE The “no” command sets the maximum number of unanswered LCP echo requests to is default, i.e., 5. XAMPLE ALU(config-if atm0)# ppp lcp max-echo 20 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 229: Ppp Timeout Restart-Interval

    The timer for retransmission (in seconds) of LCP 1-30 and NCP packets. The range varies from 1-30. EFAULT ALUE The default restart-timer value is “3 seconds”. XAMPLE ALU(config-if atm0)# ppp timeout restart-timer 13 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 230: Ppp Timeout Max-Configure

    (LCP or NCP) to be sent without sending a Configure Ack, before assuming that configuration is not converging. EFAULT ALUE The default max-failure value is “5”. XAMPLE ALU(config-if atm0)# ppp timeout max-failure 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 231: Ppp Timeout Max-Terminate

    Denotes the number of unanswered 1-255 PADIs/PADRs sent by the PPPoE client before the attempted session is reset. EFAULT ALUE The default max-retry value is ‘infinite’. XAMPLE ALU(config-if atm0)# pppoe max-retry 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 232: Pppoe Negotiate

    When the interface is administratively brought up, the link comes up within 20 to 40 seconds. PPPoE negotiation is automatically started by sending a PADI provided “encapsulation pppoe” is configured. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config-if atm0)# pppoe negotiate Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 233: Pppoe Retry-Timer

    Denotes the initial timer for re- 0-300 transmission of PPPoE PADI (or PADR) packets. EFAULT ALUE The default retry-timer value is 10 seconds. XAMPLE ALU(config-if atm0)# pppoe retry-timer 15 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 234: Pppoe Service-Name

    PPPoE server. ARAMETERS Parameter Description Service name. Maximum length of the name service name is 50 characters. EFAULT ALUE None. XAMPLE ALU(config-if atm0)# pppoe service-name ISP1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 235: Show Ppp All Configuration

    PPP Max Configure : 10 PPP Max Failure Authentication protocol : pap Authentication username : user1 Authentication password : secret1 Authentication client-username : user2 Authentication client-password : secret2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 236: Show Ppp All Statistics

    LCP Discard Requests: LCP Invalid Packets: IPCP Configure Requests: IPCP Configure Acks: IPCP Configure Naks: IPCP Configure Rejects: IPCP Terminate Requests: IPCP Terminate Acks: IPCP Code Rejects: IPCP Invalid Packets: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 237: Show Ppp Authentication Configuration

    ARAMETERS Parameter Description Port number of the ATM interface. port XAMPLE ALU# show ppp authentication configuration atm 0 Authentication protocol: pap Authentication username: user1 Authentication password: secret1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 238: Show Ppp Authentication Statistics

    PAP Authentication Naks: PAP Invalid Packets: CHAP Challenges: CHAP Responses: CHAP Successes: CHAP Failures: CHAP Invalid Packets: EAP Requests: EAP Responses: EAP Successes: EAP Failures: EAP Invalid Packets: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 239: Show Ppp Ipcp Configuration

    ALU# show ppp ipcp statistics atm 0 IPCP Configure Requests: IPCP Configure Acks: IPCP Configure Naks: IPCP Configure Rejects: IPCP Terminate Requests: IPCP Terminate Acks: IPCP Code Rejects: IPCP Invalid Packets: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 240: Show Ppp Lcp Configuration

    Port number of the ATM interface. port XAMPLE ALU# show ppp lcp configuration atm 0 LCP Max Echoes LCP Echo Interval : 60 (sec) LCP Restart Interval : 30 (sec) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 241: Show Ppp Lcp Statistics

    LCP Configure Naks: LCP Configure Rejects: LCP Terminate Requests: LCP Terminate Acks: LCP Code Rejects: LCP Protocol Rejects: LCP Echo Requests: LCP Echo Replies: LCP Discard Requests: LCP Invalid Packets: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 242: Show Ppp Timeout Configuration

    ALU# show ppp session statistics atm 0 PPP data packets received: PPP control packets received: Packets dropped: PPP sessions initiated: PPP sessions received: PPP sessions successful: PPP sessions terminated: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 243: Show Pppoe Configuration Atm

    Port number of the interface. port XAMPLE ALU(config)# show pppoe statistics atm 0 PADI sent: PADO received: 1 PADO dropped: PADR sent: PADS received: 1 PADT sent: PADT received: 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 244 Left running head: Chapter name (automatic) Point-to-Point Protocol over Ethernet (PPPoE) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 245: Part 4 Common Classification

    To switch to the beta version, import color def’ns from beta-colors.fm Part 4 Common Classification Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 246 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 247: Common Classifiers

    All commands are described in alphabetical order. They do not follow the sequence of configuration. For more detailed information on using and configuring the above concepts, refer the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 248: Include

    ALU(config-match-list-m2)# 4 include m1 Note: There is no ordering of rules inside a match-list. All the rules are of same priority. The rule numbers are used only for reference. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 249 ALU(config)# list l2 host 192.168.0.3 include l1 ALU(config)# match-list m1 ALU(config-match-list-m1)# tcp any list l1 length 23 from ssh service range 23 35 ALU(config-match-list-m1)# exit ALU(config)# match-list m2 ALU(config-match-list-m2)# include m1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 250: List

    ALU(config)# list l2 prefix 10.0.0.0/8 prefix 20.0.0.0/8 ALU(config)# list l1 include l2 interface FastEthernet 0 ALU(config)# list l1 include l2 prefix 20.0.0.0/8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 251 ALU(config)# list l1 interface FastEthernet 0 interface Vlan ALU(config)# list L2 prefix 192.168.12.0/24 prefix 192.168.13.0/24 ALU(config)# match-list m1 ALU(config-match-list-m1)#1 udp list L1 list L2 service snmp Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 252: Match-List

    This command is entered in the Configuration Mode. This command is used to configure a match-list. This enters Match-list Configuration Mode. ARAMETERS Parameter Description Name of the match-list being configured. name EFAULT ALUE None. XAMPLE ALU(config)# match-list test ALU(config-match-list-test)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 253: Match-Lists (Rule Sets)

    [<1-1024>] udp {any|host <source ip-address>|interface <name>|list <name>|prefix <source ip-address/prefix length>} {any|host <destination ip-address>|interface <name>|list <name>|prefix <destination ip-address/prefix length>} [dscp {<0-63>|<dscp-mnemonics>}|fragment|from <1-65536>|ip- precedence {<0-7>|<precedence-mnemonics>}|length {<1- 1500>|{eq|ge|gt|le|lt|range <1-1500>}}|service {<1-65536> |<protocol>}|tos {<0-15>|<tos-mnemonics>}|type {noe|ftp| normal|rpc|rtcp|rtp|sip|tftp}] Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 254 <source ip- address/prefix length> Destination address. host <destination ip- address> Destination address with prefix length. prefix <destination ip- address/prefix length> Denotes the DSCP value. dscp <0-63> <dscp- mnemonics> Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 255 ALU(config-match-list-test)# 10 tcp host 1.1.1.1 any from 6050 ALU(config-match-list-test)# 1 udp list L3 list L4 service tftp ALU(config-match-list-test)# 2 icmp any any icmp-type 1 ALU(config-match-list-test)# 10 protocol 1 any any dscp 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 256: No Include

    They can be deleted only one at a time. ARAMETERS Parameter Description Name of the list, which has to be deleted. name EFAULT ALUE None. XAMPLE ALU(config)# no list L1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 257: No Match-List

    ALU(config-match-list-m1)# 10 tcp host 1.1.1.1/32 any from 6050 to 80 Now, to delete the rule having rule number 10, use the ‘no rule’ command: ALU(config-match-list-m1)# no rule 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 258: Show Include

    The following example displays the details of the list L1 and L2 configured: ALU(config)# show list l1 list l1 host 5.5.5.5 host 4.4.4.4 prefix 6.6.6.0/24 ALU(config)# show list l2 list l2 host 5.3.4.6 prefix 1.10.10.0/24 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 259: Show Match-List

    1 icmp any any 2 tcp any any service http 3 ip any any ALU(config-match-list-m1)# show match-list m2 match-list m2 1 tcp any any service ssh 2 udp any any Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 260: Show Rule

    2 udp prefix 22.1.1.0/8 any The following example displays the details of the rule in line number 1: ALU(config-match-list-m1)# show rule 1 1 tcp any any service ssh Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 261: Part 5 Routing Protocols

    To switch to the beta version, import color def’ns from beta-colors.fm Part 5 Routing Protocols Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 262 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 263: Protocol Independent Features

    It includes tables of parameters, default values, and configuration examples. The commands are described in alphabetical order. For more detailed information about the command parameters, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 264: Access-List (Extended)

    Destination IP address network. destination-ip-address [destination-network- number] Destination IP address network. destination ip-address/ prefix-length Destination IP address. destination-host- ipaddress If access list is matched, logs the message. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 265: Access-List (Standard)

    If access list is matched, logs the message. EFAULT ALUE By default, no access list is configured. XAMPLE ALU(config)# access-list 1 deny 1.0.0.0/8 ALU(config)# access-list 2 permit 20.0.0.0/8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 266: Clear Ip Route

    (BGP, OSPF, RIP). ARAMETERS Parameter Description Default metric value appropriate for the specified routing 1-4294967295 protocol. EFAULT ALUE This command is disabled by default. XAMPLE ALU(config-router ospf1)# default-metric 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 267: Distance

    BGP - The default distance is 20 for EBGP and 200 for IBGP. XAMPLE ALU(config-router rip)# distance 130 10.0.0.0/8 20 ALU(config-router ospf 1)# distance 60 10.0.0.0/8 ALU(config-router bgp AS1)#distance bgp 30 10 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 268: Distance Bgp

    1 - 255. Routes with a distance of 255 are not installed in the routing table. EFAULT ALUE • external-distance: 20 • internal-distance: 200 • local-distance: 200 XAMPLE ALU(config-router bgp AS1)#distance bgp 15 50 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 269: Distance Ospf

    Distance for intra-area routes. intra-area Administrative distance. 1-255 EFAULT ALUE Default administrative distance for all OSPF routes is 110. XAMPLE ALU(config-router ospf 1)# distance ospf external 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 270: Distribute-List

    Applies the access list to outgoing routing updates. interface-name Name of the interface. EFAULT ALUE None. XAMPLE ALU(config-router bgp AS1)# distribute-list 1 in ALU(config-router rip)# distribute-list prefix prefix-example in FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 271: Ip Access-List Extended

    Name or number of an Internet protocol. If a protocol is not {igre|icmp|ip|ip specified, the access-list entry applies to all protocols. inip|pim| rsvp|tcp|udp|<0- 255>} Result is deny if conditions are matched. deny Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 272 Match access list if specified precedence matches packet. precedence [<0- 7>|<keywords>] Match access list if specified ToS matches packet. tos [<0- 15>|<keywords> Example: ALU(config-ext-nacl)# permit ip 24.0.0.0/8 25.0.0.0/8 ALU(config-ext-nacl)# deny ip any 13.0.0.0/8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 273: Ip Access-List Standard

    Specify host IP address. host <host-ip- address> Source IP address network. <ip-address/prefix- length>|<ip-address subnet-mask> If access list is matched, log the message. Example: ALU(config-std-nacl)# permit host 10.0.0.1 ALU(config-std-nacl)# permit 11.0.0.0/8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 274: Ip As-Path Access-List

    In the following example, the ‘ip as-path access-list’ command creates an as-path access list named '1' to deny only those routes that include paths from or through autonomous systems 100: ALU(config)# ip as-path access-list 1 deny _100_ Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 275: Ip Community-List (Extended)

    Extended Community-list. ARAMETERS Parameter Description Extended community list number. 100-199 Denies access for matching conditions. deny Permits access for matching conditions. permit Regular expression. regular- expression EFAULT ALUE None. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 276: Ip Community-List (Standard)

    BGP peers. Specifies that the routes with this community attribute will no-export not be advertised to any EBGP peer. EFAULT ALUE None. XAMPLE ALU(config)# ip community-list 1 permit internet Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 277: Ip Prefix-List

    In the following example, permit updates for any network with a prefix mask length less than or equal to 23. Denies all network updates with a network mask length greater than 23: ALU(config)# ip prefix-list test permit 0.0.0.0/0 le 23 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 278: Ip Route

    Name of the next hop interface. interface name An administrative distance of the route. 1-255 EFAULT ALUE By default, no static route is configured. XAMPLE ALU(config)# ip route 1.1.1.1/24 2.2.2.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 279: Ip Tcp Adjust-Mss

    (maximum segment size) value on the packets going out of an interface. ARAMETERS Parameter Description The maximum segment size in the range 500-1460. 24-1460 EFAULT ALUE None. XAMPLE ALU(config-if FastEthernet0)# ip tcp adjust-mss 500 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 280: Ip Unnumbered

    ALU(config-if atm0)# ip unnumbered FastEthernet 0 Configuring Ethernet as an unnumbered interface throws up an error: ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# ip unnumbered Loopback 0 Point-to-point interfaces only Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 281: Match As-Path

    ARAMETERS Parameter Description Standard community list number. 1-99 Extended community list number. 100-199 Indicates that exact match is required. exact-match EFAULT ALUE None. XAMPLE ALU(config-route-map)# match community 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 282: Match Interface

    Name of a specific access list. prefix-list-name Name of a prefix list. EFAULT ALUE No access list numbers or prefix lists are specified. XAMPLE ALU(config-route-map)# match ip address prefix-list testprefix Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 283: Match Ip Next-Hop

    Name of a specific prefix list. EFAULT ALUE Routes are distributed freely without being required to match a next hop address. XAMPLE ALU(config-route-map)# match ip next-hop 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 284: Match Ip Route-Source

    Distributes routes based on a prefix list. prefix-list access-list name Name of a specific access list. prefix-list-name Name of a specific prefix list. EFAULT ALUE None. XAMPLE ALU(config-route-map)# match ip route-source 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 285: Match Metric

    By default, OSPF, BGP and Static routes can install a maximum number of 16 ECMP paths. And, RIP installs maximum 8 ECMP paths. XAMPLE ALU(config-router ospf 1)# maximum-paths 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 286: Match Route-Type

    ARAMETERS Parameter Description Name of the interface. interface-name EFAULT ALUE None. XAMPLE ALU(config-router ospf1)# no passive-interface FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 287: No Ip Tcp Adjust-Mss

    ARAMETERS Parameter Description Name of the interface. interface-name EFAULT ALUE Routing updates are sent on the interface. XAMPLE ALU(config-router ospf1)# passive-interface FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 288: Passive-Interface Default

    This command is entered in the Router Configuration Mode. This command sets all interfaces as passive by default. ARAMETERS Parameter Description All interfaces become passive. default EFAULT ALUE By default, all interfaces are active. XAMPLE ALU(config-router ospf1)# passive-interface default Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 289: Redistribute

    ID should not be same. Redistributed routes metric type. metric-type <1- 2> route-map <name> Use route map for route filtering and modifying attributes of the routes. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 290 EFAULT ALUE None. XAMPLE ALU(config-router ospf 1)#redistribute static metric 19 metric- type 1 ALU(config-router rip)#redistribute bgp 1 route-map test ALU(config-router bgp AS1)#redistribute ospf 1 route-map testospf weight 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 291: Route-Map

    This sequence number signifies the priority of a route-map rule. EFAULT ALUE Default route map action is permit. XAMPLE ALU(config)# route-map ospf-to-eigrp permit 20 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 292: Set As-Path

    65535>] route-map. Applies to inbound and outbound BGP route maps. EFAULT ALUE Autonomous system path is not specified. XAMPLE ALU(config-route-map)# set as-path tag Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 293: Set Community

    EBGP peer. Removes the community attribute from the prefixes that none pass the route map. EFAULT ALUE No BGP communities attributes exist. XAMPLE ALU(config-route-map)# set community 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 294: Set Comm-List

    The default is 15 minutes. If the penalty for a flapping route decreases enough to fall 1-20000 below reuse limit, router starts advertising the route. The default is 750 seconds. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 295: Set Local-Preference Number Value

    BGP path. ARAMETERS Parameter Description Preference value. 0-4294967295 EFAULT ALUE By default, local preference value is 100. XAMPLE ALU(config-route-map)# set local-preference 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 296: Set Metric

    Parameter Description Internal metric value. internal External metric value. external OSPF external type-1 metric. type-1 OSPF external type-2 metric. type-2 EFAULT ALUE None. XAMPLE ALU(config-route-map)# set metric-type type-1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 297: Set Origin

    Route with highest weight is preferred. ARAMETERS Parameter Description Weight value. 0-4294967295 EFAULT ALUE Default weight is 0. XAMPLE ALU(config-route-map)# set weight 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 298: Show Access-Lists

    1.0.0.0 0.255.255.255 (0 packets) Standard IP access list 2 permit 20.0.0.0 0.255.255.255 (0 packets) Extended IP access list 101 permit ip 162.168.0.0 0.0.0.0 255.255.252.0 0.0.0.0 (0 packets) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 299: Show Ip Access-Lists

    Description Specify the as-path access list number whose configuration 1-199 details is to be viewed. XAMPLE ALU# show ip as-path-access-list AS path access list 1 deny _100_ ALU# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 300: Show Ip Community-List

    Name of a specific prefix list whose configuration details are to be viewed. XAMPLE ALU# show ip prefix-list ip prefix-list test seq 5 deny 10.0.0.0/8 ge 23 ALU# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 301: Show Ip Protocols

    30 seconds Precisely when the next update is due to be sent. next due in 2 seconds Specifies the value of the invalid parameter. Invalid after 180 seconds Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 302 Redistributing Specifies the networks for which the routing process is Routing currently injecting routes. Lists all the routing sources the Alcatel-Lucent software is Routing using to build its routing table. For each source, you will see Information the following displayed: Sources •...
  • Page 303: Show Ip Route

    O E2 10.0.0.0 [110/20][100] via 2.2.2.2, FastEthernet0 100.0.0.0/8 [1/0] via 135.254.163.1, Vlan2 120.0.0.0/8 [1/0] via 135.254.163.1, Vlan2 135.254.0.0/24 is subnetted, 1 subnet 135.254.163.0 [0/0] is directly connected, Vlan2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 304 Mask distribution: 1 route at length 0 4 routes at length 8 4 routes at length 24 Example 5 # show ip route supernets-only 0.0.0.0/0 [1/0] via 135.254.163.1, Vlan2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 305: Show Route-Map

    Exit Policy: Match clauses: ip address (access-lists) : 1 Set clauses: metric 10 route-map testset, permit, sequence 10 Description: Exit Policy: Match clauses: Set clauses: metric 20 ALU# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 306 Set actions - particular actions to perform if the criteria Set clauses enforced by the match commands are met. metric Displays the number of packets and bytes that have been Policy routing filtered by policy routing. matches Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 307: Router Information Protocol

    The commands are described in alphabetical order. For more detailed information about using and configuring the RIP, refer the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 308: Auto-Summary

    Configuration Mode. This command clears the RIP database or the RIP statistics. ARAMETERS Parameter Description Clears RIP database. database Clears RIP statistics. statistics XAMPLE ALU# clear ip rip database Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 309: Default Information Originate (Rip)

    Specify the default metric value. 1-16 EFAULT ALUE The metric of redistributed connected and static routes is set to 0, otherwise default metric is set to 1. XAMPLE ALU(config-router rip)# default-metric 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 310: Distance

    Access-list to be associated in the range 1-99. 1-99 Access-list to be associated in the range 1300-1999. 1300-1999 EFAULT ALUE The default distance is 120. XAMPLE ALU(config-router rip)# distance 130 10.0.0.0/8 20 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 311: Distribute-List

    Interface on which the access list should be applied. If no interface-name interface is specified, the access list will be applied to all updates. EFAULT ALUE Disabled. XAMPLE ALU(config-router rip)# distribute-list prefix prefix-example in FastEthernet0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 312: Ip Rip Authentication Key-Chain

    Keyed Message Digest 5 (MD5) authentication. text Plain Text authentication. EFAULT ALUE The default authentication mode is Plain Text authentication XAMPLE ALU(config-if FastEthernet0)# ip rip authentication mode md5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 313: Ip Rip {Send|Receive

    This command is entered in the Interface Configuration Mode. This command enables the split horizon mechanism. ARAMETERS Parameter Description Enable poison-reverse on an interface. poison-reverse EFAULT ALUE By default, split-horizon is enabled. XAMPLE ALU(config-if FastEthernet0)#ip split-horizon Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 314: Key

    This command is entered in the Configuration Mode. This command is used to configure a key chain. ARAMETERS Parameter Description Name of the key chain being configured. key-chain name EFAULT ALUE None. XAMPLE ALU(config)# key-chain allen ALU(config-keychain allen)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 315: Key-String

    This command is entered in the Router Configuration Mode. This command associates a specific network with a RIP routing process. ARAMETERS Parameter Description Network number network-number XAMPLE ALU(config-router rip)# network 10.0.0.0 NEIGHBOR neighbor <neighbor-address> Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 316 Parameter Description neighbor-address IP address of a peer router with which routing information will be exchanged. EFAULT ALUE No neighboring routers are defined. XAMPLE ALU(config-router rip)# neighbor 172.19.3.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 317: No Auto-Summary

    <key-chain name> This command is entered in the Interface Configuration Mode. The ‘no’ command removes the key chain associated to an interface. This disables RIP authentication. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 318: No Ip Rip Authentication Mode

    Also these interfaces will not be advertised in any RIP updates. NO OFFSET LIST no offset-list {{<0-99>|<1300-1999> <access-list name>} {in|out}} {<0-16>} [<interface-name>] This command is entered in the Router Configuration Mode. The above command disables the configured offset-list. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 319: No Passive-Interface

    NO IP RIP V BROADCAST no ip rip v2-broadcast This command is entered in the Interface Configuration Mode. The ‘no’ command disables sending of routing updates to broadcast address. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 320: Offset-List

    1, add 2 hops to the metric." If no interface is identified, the list will modify either all incoming updates or all outgoing updates specified by the access-list on any interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 321: Passive-Interface

    Suppresses routing updates on the specified interface. default Suppresses routing updates on all interfaces. EFAULT ALUE Routing updates are sent on the RIP enabled interface. XAMPLE ALU(config-router rip)# passive-interface FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 322: Redistribute

    Metric to be applied for redistributed routes. route-map Route-map to be used to filter routes and set metrics. reference EFAULT ALUE None. XAMPLE ALU(config-router rip)# redistribute bgp 1 metric 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 323: Router Rip

    Outgoing update filter list for all interfaces is not set Incoming update filter list for all interfaces is not set Interface Send Recv Key-chain Vlan3 Routing for Networks: 4.0.0.0 Distance: (default is 120) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 324 For each source, you will see the following displayed: • IP address • Administrative distance • Time the last update was received from this source Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 325: Show Ip Rip Database

    Name of the VRF. XAMPLE ALU# show ip rip database RIP Route Table --------------- 1.0.0.0/8 auto-summary 1.1.1.0/24 directly connected, FastEthernet0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 326: Show Ip Rip Interfaces

    The Send version. Send Ver The Receive version. Recv Ver Values are: Flags • U: Unnumbered • P: Passive • B: V2 Broadcast • S: Split horizon disabled Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 327: Show Ip Rip Peers

    The time of the last update (in secs). Last Update (secs) The Receive Version. Rcv Ver The number of bad packets received. Bad Pkts The number of bad routes received. Bad Routes Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 328: Show Ip Rip Statistics

    Bad msgs received Trig Updates sent Auth failures Responses sent *Unicast tx failure 0 Routes advertised Bcast tx failures Updates received Mcast tx failures Requests received Bad Rtes received Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 329: Show Key-Chain

    Name of the key chain being associated to the interface. key-chain name XAMPLE ALU(config)# show key-chain key-chain alu1 key 1 key-string alcatel-lucent Accept lifetime (00:00:00 01 Jan 2000) - (Infinite) [Valid Now] Send lifetime (00:00:00 02 Feb 2001) - (Infinite) [Valid Now] key-chain alu2 key 2 key-string lucent...
  • Page 330: Timers Basic

    The sleeptime value should be 4294967295> less than the update time. If the sleeptime is greater than the update time, routing tables will become unsynchronized. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 331: Validate-Update-Source

    Enter the command in the Router Configuration Mode. This command validates the source IP address of incoming RIP routing updates. ARAMETERS None. EFAULT ALUE Enabled. XAMPLE ALU(config-router rip)# validate-update-source Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 332: Version

    Receive and send only Version 1 packets. • Receive and send only Version 2 packets. • Receive and send Version 1 and 2 packets. XAMPLE ALU(config-router rip)# version 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 333: V2-Broadcast (Rip)

    RIP Version 2 update packets to be sent as broadcast packets instead of multicast packets. ARAMETERS None. EFAULT ALUE This command is disabled by default. XAMPLE ALU(config-if FastEthernet0)# ip rip v2-broadcast Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 334 Left running head: Chapter name (automatic) Router Information Protocol Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 335: Border Gateway Protocol

    BGP configuration as quick-start and reference information. The commands are described in alphabetical order. For more detailed information about using and configuring the BGP, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 336: Address-Family Ipv4 Unicast

    In OmniAccess 5510-AA/AB USG, currently only IPv4 address family and unicast services are supported. By default all commands are applied to ipv4 unicast address family. XAMPLE ALU(config-router bgp AS30)# address-family ipv4 unicast ALU(config-router-af-ucast)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 337: Aggregate-Address

    Name of route map used to set the attribute of the attribute-map aggregate route. Name of the route map. map-name EFAULT ALUE None. XAMPLE ALU(config-router bgp AS30)#aggregate-address 35.0.0.0/8 advertise-map admap1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 338: Bgp Always-Compare-Med

    ARAMETERS None. EFAULT ALUE As-path is considered during BGP best path selection. XAMPLE ALU(config-router bgp AS30)# bgp bestpath as-path ignore Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 339: Bgp Bestpath Compare-Cluster-Length

    BGP peers during the best path selection process and switch the best path to the route with the lowest router ID. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config-router bgp AS30)#bgp bestpath compare-routerid Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 340: Bgp Bestpath Med

    This command restores route reflection from a BGP route reflector to its clients. ARAMETERS None. EFAULT ALUE When you configure a route reflector, it reflects routes from one client to others. XAMPLE ALU(config-router bgp AS30)#bgp client-to-client reflection Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 341: Bgp Cluster-Id

    BGP confederation identifier. ARAMETERS Parameter Description Autonomous system number that internally includes 1-65535 multiple autonomous systems. EFAULT ALUE No confederation identifier is configured. XAMPLE ALU(config-router bgp AS30)#bgp confederation identifier 56687 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 342: Bgp Confederation Peers

    Value (in seconds) to start suppressing a route. 1-20000 Maximum duration (in minutes) to suppress a stable route. 1-255 Name of route map that controls BGP route dampening. name Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 343: Bgp Default Local-Preference

    Specify the local preference value. Higher the value the 0-4294967295 more preference it has. EFAULT ALUE By default, local preference value is 100. XAMPLE ALU(config-router bgp AS30)#bgp default local-preference 5000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 344: Bgp Enforce-First-As

    This command is entered in the Address Family or Router Configuration Mode. This command immediately resets the session if the link to a directly connected external peer goes down. ARAMETERS None. EFAULT ALUE Enabled. XAMPLE ALU(config-router AS30)# bgp fast-external-fallover Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 345: Bgp Graceful-Restart-Timers

    This command enables logging of messages when a BGP neighbor goes up or down or resets. ARAMETERS None. EFAULT ALUE Logging is disabled. XAMPLE ALU(config-router AS30)# bgp log-neighbor-changes Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 346: Bgp Router-Id

    EFAULT ALUE Disabled. XAMPLE ALU(config-router bgp AS30)# bgp write config router bgp 30 bgp enforce-first-as address-family ipv4 unicast aggregate-address 0.0.0.0/0 aggregate-address 35.0.0.0/8 attribute-map m1 exit-address-family ALU(config-router bgp AS30)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 347: Clear Ip Bgp

    ARAMETERS Parameter Description Clears the dampening information for a specified network. ip-address/mask Clears the dampening information for a specified network. network-number XAMPLE ALU# clear ip bgp dampening Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 348: Clear Ip Bgp External

    Clears flap statistics for all the paths that pass the access 1-199 list. Clears flap statistics for all the BGP AS paths that match the regular- regular expression. expression Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 349: Clear Ip Bgp Peer-Group

    Triggers inbound or outbound update. in|out Triggers soft re-configuration. soft EFAULT ALUE By default, a reset is not initiated. XAMPLE ALU# clear ip bgp peer-group p1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 350: Clear Ip Bgp Neighbor

    This command is used to configure BGP router to advertise default route. ‘Redistribute’ command should be configured to complete this configuration. ARAMETERS None. EFAULT Disabled. XAMPLE ALU#(config-router bgp AS30)# default-information originate Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 351: Ip Bgp-Community New-Format

    Set clauses: community 0:100 ALU(config)# ALU(config)# no ip bgp-community new-format ALU(config)# show route-map test3 route-map test3, permit, sequence 5 Description: Exit Policy: Match clauses: Set clauses: community 100 ALU(config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 352: Neighbor Activate

    Name of a BGP peer group. peer-group-name Specify the time in seconds. 0-600 EFAULT 30 seconds for external peers and 5 seconds for internal peers. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 advertisement- interval 77 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 353: Neighbor Capability

    Name of a BGP peer group. peer-group-name EFAULT No default route is sent to the neighbor. XAMPLE ALU(config-router bgp AS30)# neighbor 1.1.1.1 default-originate NEIGHBOR DESCRIPTION neighbor {<ip-address>|<peer-group-name>} description <line> Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 354 Name of a BGP peer group. peer-group-name Descriptive text (up to 80 characters) that describes the line neighbor. EFAULT There is no description of the neighbor. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 description linktoisp1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 355: Neighbor Distribute-List

    Access list is applied to incoming advertisements from that neighbor. Access list is applied to outgoing advertisements to that neighbor. EFAULT No BGP neighbor is specified. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 distribute-list 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 356: Neighbor Ebgp-Multihop

    Number of an AS path access list. You can define this 1-199 access list with the ip as-path access-list command. Access list to incoming routes. Access list to outgoing routes. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 357: Neighbor Local-As

    Name of a BGP peer group. peer-group-name Any valid AS number. 1-65535 Note: Do not specify the AS number to which the neighbor belongs. EFAULT None. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 local-as 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 358: Neighbor Maximum-Prefix

    EFAULT This command is disabled by default. There is no limit on the number of prefixes. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 maximum-prefix 20000 50 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 359: Neighbor Next-Hop-Self

    IP address of the BGP neighbor. ip-address Name of a BGP peer group. peer-group-name EFAULT There are no BGP neighbors in a peer group. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 peer-group P1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 360: Neighbor Peer-Group (Creating)

    Name of the BGP peer group. peer-group-name Name of a prefix list. name Access list is applied to incoming advertisements from that neighbor. Access list is applied to outgoing advertisements to that neighbor. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 361: Neighbor Remote-As

    Name of a BGP peer group. peer-group-name Autonomous system to which the neighbor belongs. 1-65535 EFAULT No neighbor configured. XAMPLE ALU(config-router bgp AS30)# neighbor 1.1.1.1 remote-as 5000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 362: Neighbor Remove-Private-As

    Name of route map. name Apply to incoming/outgoing routes. in|out EFAULT ALUE No route maps are applied to a peer. XAMPLE ALU(config-router bgp AS30)#neighbor 35.0.0.0 route-map R1 in Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 363: Neighbor Route-Reflector-Client

    Parameter Description Neighbor’s IP address. ip-address Name of a BGP peer group. peer-group-name EFAULT No community attribute is sent to any neighbor. XAMPLE ALU(config-router bgp AS30)#neighbor 35.0.0.1 send-community Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 364: Neighbor Shutdown

    IP address of the BGP-speaking neighbor. ip-address Name of a BGP peer group. peer-group-name Store incoming updates. inbound EFAULT By default, soft re-configuration is disabled. XAMPLE ALU(config-router bgp AS30)#neighbor 35.0.0.0 soft- reconfiguration inbound Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 365: Neighbor Timers

    Keepalive message interval for the neighbor. 0-65535 Hioldtime interval for the neighbor. 0-65535 EFAULT ALUE Keepalive time: 60 seconds. Holdtime: 180 seconds. XAMPLE ALU(config-router bgp AS30)# neighbor 35.0.0.0 timers 50 500 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 366: Neighbor Unsupress-Map

    Name of the route map. route-map-name EFAULT ALUE If aggregate-address command is configured, only then the aggregate routes are advertised. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 unsupress-map r1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 367: Neighbor Update-Source

    Name of the interface. interface-name EFAULT ALUE By default, IP address of the interface connected to neighbor is used for TCP connection. XAMPLE ALU(config-router bgp AS30)#neighbor 1.1.1.1 update-source FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 368: Neighbor Version

    IP address of the BGP-speaking neighbor. ip-address Name of a BGP peer group. peer-group-name Default weight assigned to the routes from this neighbor. 0-65535 XAMPLE ALU(config-router bgp AS30)# neighbor 1.1.1.1 weight 500 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 369: Network

    Name of the route-map. name An absolute weight to a BGP network. 0-65535 EFAULT ALUE No networks are specified. XAMPLE ALU(config-router bgp AS30)#network 35.0.0.0/8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 370: Router Bgp

    Display a particular network in the BGP routing table. ip-address/ prefix-length Displays route for the given network. It also shows all the longer-prefixes more specific routes in the given network. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 371 Resolution status of nexthops for iBGP and multihop eBGP nexthop routes. Path information. paths Displays information on peer-groups. peer-group Displays routes matching the AS path regular expression. regexp Summary of BGP neighbor status. summary Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 372 Next Hop Metric LocPref Weight Path *> 1.0.0.0/8 1.1.1.2 100i *> 4.0.0.0/8 1.1.1.2 100i *> 5.0.0.0/8 1.1.1.2 100i *> 6.0.0.0/8 1.1.1.2 100i *> 111.111.111.0/24 111.111.111.112 110 300? ALU# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 373: Show Ip Bgp Cidr-Only

    Origin codes: i - IGP, e - EGP, ? - incomplete Prefix/len Next Hop Metric LocPref Weight Path *> 111.111.111.0/24 111.111.111.112 110 300? * d 118.0.0.0/24 111.111.111.112 110 300? Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 374: Show Ip Bgp Community

    LocPref Weight Path *> 1.0.0.0/8 1.1.1.2 100i *> 4.0.0.0/8 1.1.1.2 100i *> 5.0.0.0/8 1.1.1.2 100i *> 6.0.0.0/8 1.1.1.2 100i * d 7.0.0.0/8 1.1.1.2 100i * d 118.0.0.0/24 111.111.111.112 110 300? Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 375: Show Ip Bgp Community-List

    Configuration Mode. This command is used to display routes matching the BGP community list. ARAMETERS Parameter Description Community list number. 1-199 Displays the routes that have an exact match. exact-match XAMPLE ALU# show ip bgp community-list 20 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 376: Show Ip Bgp Dampened-Paths

    IP address of the peer that advertised this path. From Time (in hours:minutes:seconds) after which the path will be Reuse made available. AS path of the route that is being dampened. Path Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 377: Show Ip Bgp Filter-List

    Number of an autonomous system path access list. It can be a number from 1 to 199. EFAULT ALUE None. XAMPLE ALU# show ip bgp filter-list 2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 378: Show Ip Bgp Flap-Statistics

    This command is entered in the Super User Mode, Configuration Mode or Router Configuration Mode. This command displays the routes with inconsistent originating autonomous systems. ARAMETERS None. XAMPLE ALU# show ip bgp inconsistent-as Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 379: Show Ip Bgp Neighbors

    Address family IPv4 Unicast: advertised and received Received 342 messages, 0 notifications, 0 in queue Sent 333 messages, 7 notifications, 0 in queue Minimum time between advertisement runs is 30 seconds Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 380 If the neighbor is in the same autonomous system as the router, then the link between them is internal; otherwise, it is considered external. Autonomous system of the neighbor. remote AS Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 381 Number of prefixes accepted from neighbor. accepted prefix Number of prefixes filtered. filtered Number of prefixes dampened. dampened Number of updates pending. updates pending Number of withdrawals pending. withdrawal pending Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 382 TCP window size of the local host. rcvwnd A calculated smoothed round-trip timeout. SRTT Round-trip timeout. RTTO Variance of the round-trip time. Smallest recorded round-trip timeout (hard wire value used minRTT for calculation). Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 383: Show Ip Bgp Paths

    Number of routes using that path. Refcount The Multi Exit Discriminator (MED) metric for the path. Metric The autonomous system path for that route, followed by the Path origin code for that route. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 384: Show Ip Bgp Peer-Group

    Configuration Mode. This command displays the routes matching with the AS path regular expression. ARAMETERS Parameter Description Regular expression to match the BGP autonomous system regular- paths. expression XAMPLE GP local router ID is 40.0.0.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 385: Show Ip Bgp Summary

    BGP messages sent to that neighbor. MsgSent Number of messages from that neighbor waiting to be processed. Number of messages waiting to be sent to that neighbor. OutQ Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 386: Synchronization

    This command is entered in the Address Family or Router Configuration Mode. This command is used to enable the synchronization between the BGP and IGP system. ARAMETERS None. EFAULT Enabled. XAMPLE ALU(config-router bgp AS30)# synchronization Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 387: Timers Bgp

    BGP assumes that neighbor is dead. EFAULT ALUE The default keepaalive interval is 60 seconds. The default holdtime interval is 180 seconds. XAMPLE ALU(config-router bgp AS30)# timer bgp 100 500 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 388 Left running head: Chapter name (automatic) Border Gateway Protocol Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 389: Open Shortest Path First

    OSPF configuration as quick-start and reference information. The commands are described in alphabetical order. For more detailed information about using and configuring the OSPF, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 390: Alt-Abr

    Enables Message Digest 5 (MD5) authentication on the message-digest area specified by the area-id argument. EFAULT ALUE The default authentication is Plain Text authentication. XAMPLE ALU(config-router ospf 30)# area 1 authentication message- digest Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 391: Area Default-Cost

    Cost for the default summary route used for a stub or NSSA. 0-16777215 The acceptable value is a 24-bit number. EFAULT ALUE Default cost is 1. XAMPLE ALU(config-router ospf 30)# area 1 default-cost 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 392: Area Nssa

    Allows an area to be a not-so-stubby area but not have no-summary summary routes injected into it. EFAULT ALUE No NSSA area is defined. XAMPLE ALU(config-router ospf 30)# area 1 nssa Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 393: Area Range

    3 summary LSA is suppressed and the component networks remain hidden from other networks. EFAULT ALUE Disabled. XAMPLE ALU(config-router ospf 30)# area 1 range 10.0.0.0/8 not- advertise Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 394: Area Stub

    Prevents an ABR from sending summary link no-summary advertisements into the stub area. EFAULT ALUE No stub area is defined. XAMPLE ALU(config-router ospf 30)# area 1 stub no-summary Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 395: Area Virtual-Link

    1-8192 The authentication key. authentication- key <0-0> key The message digest authentication key identifier. <1-255> md5 key EFAULT ALUE None. XAMPLE ALU(config-router ospf 30)# area 1 virtual-link 202.202.202.5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 396: Auto-Cost

    Description OSPF process ID. 1-65535 Neighbor router ID. neighbor-id The interface name for the which counters is to be cleared. interface-name XAMPLE ALU# clear ip ospf 1 redistribution Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 397: Compatible Rfc1583

    Use the no compatible rfc1583 command to enable the calculation method used per RFC 2328. ARAMETERS None. EFAULT ALUE Compatible with RFC 1583. XAMPLE ALU(config-router ospf 30)# compatible rfc1583 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 398: Default-Information Originate

    The default is type 2 external route. <route-map name> Routing process will generate the default route if the route map is satisfied. EFAULT ALUE Disabled. XAMPLE ALU(config-router ospf 30)# default-information originate always metric 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 399: Default-Metric

    OSPF routing protocol. ARAMETERS Parameter Description Default metric value appropriate for the specified routing <1-4294967295> protocol. EFAULT ALUE Default metric is 20. XAMPLE ALU(config-router ospf 30)#default-metric 60000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 400: Distance

    IP standard access list. 1-99 IP standard access list (expanded range). 1300-1999 EFAULT ALUE The default distance is 110. XAMPLE ALU(config-router ospf 30)# distance 60 10.0.0.0/8 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 401: Distance Ospf

    Sets the distance for all routes within an area. intra-area <1- 255> EFAULT ALUE The default distance for each type is 110. XAMPLE ALU(config-router ospf 30)# distance ospf external 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 402: Ip Ospf Authentication

    0-0 password key The OSPF password. Password need not be the same throughout the area but needs to be the same between neighbors. EFAULT ALUE No password is specified. XAMPLE ALU(config-if FastEthernet0)# ip ospf authentication-key passwordtest Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 403: Ip Ospf Cost

    LSAs on OSPF interface. ARAMETERS None. EFAULT ALUE By default, database-filtering is not enabled. All outgoing LSAs are flooded to the interface. XAMPLE ALU(config-if FastEthernet0)# ip ospf database-filter all out Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 404: Ip Ospf Dead-Interval

    This command is entered in the Interface Configuration Mode. This command is used to suppress the unnecessary flooding of LSAs in stable topologies. ARAMETERS None. EFAULT ALUE Disabled. XAMPLE ALU(config-if FastEthernet0)# ip ospf flood-reduction Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 405: Ip Ospf Hello-Interval

    Key number in the range from 1 to 255. <1-255> The message digest authentication key. EFAULT ALUE OSPF MD5 authentication is disabled. XAMPLE ALU(config-if FastEthernet0)# ip ospf message-digest-key 100 md5 passwordline Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 406: Ip Ospf Mtu-Ignore

    Specifies the OSPF point-to-multipoint network. point-to- multipoint Specifies the OSPF point-to-point network. point-to-point EFAULT ALUE Depends on the interface type. XAMPLE ALU(config-if FastEthernet0)# ip ospf network non-broadcast Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 407: Ip Ospf Priority

    EFAULT ALUE The default retransmit-interval is 5 seconds. XAMPLE ALU(config-if FastEthernet0)# ip ospf retransmit-interval 6 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 408: Ip Ospf Transmit-Delay

    This command is entered in the Router Configuration Mode. This command is used to enable logging of adjacency changes. ARAMETERS Parameter Description Logs the messages for all state changes. detail EFAULT ALUE Enabled. XAMPLE ALU(config-router ospf 30)# log-adjacency-changes detail Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 409: Neighbor

    The default is 120 seconds (2 minutes). This keyword does not apply to point-to-multipoint interfaces. EFAULT ALUE None. XAMPLE ALU(config-router ospf 30)# neighbor 10.0.0.1 priority 1 poll- interval 130 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 410: Network Area

    INTERFACE no passive-interface {<interface-name>|default} This command is entered in the Router Configuration Mode. The “no” command enables sending of hello packets and routing updates on a specified interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 411: No Log-Adjacency-Changes

    <1-8192>] authentication-key <0-0> <key>]| message-digest-key <1-255> md5 <key>]] This command is entered in the Router Configuration Mode. The “no” command removes the virtual link with neighbor specified by router ID. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 412: Passive-Interface

    OSPF router ID. ARAMETERS Parameter Description Router ID in IP address format. ip-address EFAULT ALUE Default Router ID is generated using interface IP addresses. XAMPLE ALU(config-router ospf 30)#router-id 35.0.0.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 413: Router Ospf

    ALU# show ip ospf Routing Process "ospf 1" with ID 1.1.1.2 Supports only single TOS(TOS0) routes Supports opaque LSA It is an area border and autonomous system boundary router Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 414 Number of opaque link-state advertisements. Number of opaque AS LSA Number of areas configured for the router. Number of areas in this router External flood list length. External flood list length Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 415: Show Ip Ospf Border-Routers

    The area ID of the area from which this route is learned. Area The internal number of the shortest path first (SPF) SPF 5 calculation that installs this route. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 416: Show Ip Ospf Database

    [link-state-id] [adv-router [ip-address]] show ip ospf [process-id [area-id]] database [nssa-external] [link-state-id] [self-originate][link-state-id] show ip ospf [process-id [area-id]] database [opaque-area] [link-state-id] show ip ospf [process-id [area-id]] database [opaque-area] [link-state-id] [adv-router [ip-address]] Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 417 This command is entered in the Super User Mode, Configuration Mode or Router Configuration Mode. This command displays lists of information related to the OSPF database for a specific router. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 418 Link ID ADV Router Seq# Checksum Link count 2.2.2.2 2.2.2.2 1018 0x80000025 0x3EC5 4.4.4.2 4.4.4.2 0x80000024 0xC1E6 Net Link States (Area 0) Link ID ADV Router Seq# Checksum Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 419 External Route Tag: 0 LS age: 690 Options: (No TOS-capability, No DC) LS Type: AS External Link Link State ID: 2.2.2.0 (External Network Number ) Advertising Router: 1.1.1.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 420 LS Seq Number: 80000003 Checksum: 0xC4BB Length: 36 Network Mask: /24 Metric Type: 2 (Larger than any link state path) TOS: 0 Metric: 20 Forward Address: 0.0.0.0 External Route Tag: 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 421 Link State ID: 2.2.2.2 (address of Designated Router) Advertising Router: 1.1.1.2 LS Seq Number: 80000001 Checksum: 0x4AA5 Length: 32 Network Mask: /32 Attached Router: 6.6.6.6 Attached Router: 1.1.1.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 422 LS Seq Number: 80000003 Checksum: 0xC4BB Length: 36 Network Mask: /24 Metric Type: 2 (Larger than any link state path) TOS: 0 Metric: 20 Forward Address: 0.0.0.0 External Route Tag: 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 423 Options: (No TOS-capability, No DC, Opq Bit) LS Type: Router Links Link State ID: 6.6.6.6 Advertising Router: 6.6.6.6 LS Seq Number: 80000008 Checksum: 0xC20B Length: 36 Number of Links: 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 424 Number of Links: 1 Link connected to: a Transit Network (Link ID) Designated Router address: 2.2.2.2 (Link Data) Router Interface address: 2.2.2.1 Number of TOS metrics: 0 TOS 0 Metrics: 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 425 1.1.1.2 0x80000002 0x4FC1 Type-5 AS External Link States Link ID ADV Router Seq# Checksum 1.1.1.0 1.1.1.2 1678 0x80000003 0x9F10 2.2.2.0 1.1.1.2 0x80000004 0x9D0B 45.5.5.0 1.1.1.2 1617 0x80000003 0xC4BB Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 426 LS Type: Summary Links (Network) Link State ID: 1.1.1.0 (summary Network Number) Advertising Router: 1.1.1.2 LS Seq Number: 80000003 Checksum: 0x65AC Length: 28 Network Mask: /24 TOS: 0 Metric: 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 427: Show Ip Ospf Flood-List

    Link-state ID of the LSA. LS ID Router ID of the advertising router. ADV RTR Sequence number of the LSA. Seq NO Age of LSA (in seconds). Checksum of LSA. Checksum Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 428: Show Ip Ospf Interface

    Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5 Hello due in 00:00:07 Neighbor Count is 1, Adjacent neighbor count is 1 Adjacent with neighbor 2.2.2.2 (Designated Router) Suppress hello for 0 neighbor(s) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 429 Timer intervals configured Number of seconds until next hello Hello packet is sent out this interface. Count of neighbors and list of adjacent Neighbor Count neighbors on an interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 430: Show Ip Ospf Interface-Process

    Name of the interface. interface-name XAMPLE ALU(config)# show ip ospf interface-process Interface-Process Table: Interface Attached Process Waiting Process FastEthernet0 switchport0 switchport1 switchport2 switchport3 atm0 Vlan2 Vlan3 Tunnel5 FastEthernet0:1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 431: Show Ip Ospf Neighbor

    Neighbor priority is 1, State is FULL, 5 state changes DR is 2.2.2.2 BDR is 2.20.1.1 Options is 0x2 Dead timer due in 00:00:32 Neighbor is up for 17:00:16 retransmission queue length 0, number of retransmissions 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 432 Neighbor is up for the neighbor went into two-way state. Number of elements in the retransmission queue length retransmission queue. Number of times update packets have been resent during flooding. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 433: Show Ip Ospf Process-Interface

    This command is entered in the Super User Mode, Configuration Mode or Router Configuration Mode. This command displays the process interface table. ARAMETERS None. XAMPLE ALU(config-router ospf 20)# show ip ospf process-interface Process-Interface Table: Process-Id Interfaces FastEthernet0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 434: Show Ip Ospf Request-List

    Neighbor 6.6.6.6, interface FastEthernet0 address 2.2.2.2 Type LS ID ADV RTR Seq NO Checksum 1280 192.175.142.0 1.1.1.1 0x80000003 0x9FFB 1280 192.175.206.0 1.1.1.1 0x80000003 0xDC7E 1280 192.175.15.0 1.1.1.1 0x80000003 0x1A01 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 435: Show Ip Ospf Retransmission-List

    Neighbor 6.6.6.6, interface FastEthernet0 address 2.2.2.2 Link state retransmission due in 0 sec, Queue length 1 Type LS ID ADV RTR Seq NO Checksum 1.1.1.0 1.1.1.2 0x80000001 0x69AA Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 436: Show Ip Ospf Route

    OSPF Router with ID (1.1.1.2) (Process ID 1) Dest/Mask Type Adv-Rtr Cost Area/tag NextHop 2.0.0.0/8 Summ 1.1.1.2 0.0.0.0 1.1.1.0/24 Ext-2 0.0.0.0 1.1.1.2 2.0.0.0/8 Summ 1.1.1.2 0.0.0.0 2.2.2.0/24 Ext-2 0.0.0.0 2.2.2.2 45.5.5.0/24 Ext-2 0.0.0.0 0.0.0.0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 437: Show Ip Ospf Summary-Address

    The following is sample output from the ‘show ip ospf summary-address’ command: ALU# show ip ospf summary-address OSPF Process 1, Summary-address 192.175.0.0/255.255.0.0 Metric -1, Type 2, Tag 4 2.0.0.0/ 255.0.0.0 Metric 20, Type 2, Tag 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 438: Show Ip Ospf Virtual-Links

    The transmit delay (in seconds) on the Transmit Delay is 1 sec virtual link. The interface state. State POINT_TO_POINT The various timer intervals configured for Timer intervals... the link. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 439: Summary-Address

    This keyword applies to OSPF only. EFAULT ALUE None. XAMPLE ALU(config-router ospf 30)# summary-address 20.0.0.0/8 tag ALU(config-router ospf 30)# summary-address 10.0.0.0/8 not advertise Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 440: Timers Lsa-Group-Pacing

    The interval in seconds at which LSAs 10-1800 are grouped and refreshed, check- summed or aged. EFAULT ALUE The default lsa-group pacing interval is 60 seconds. XAMPLE ALU(config-router ospf 30)# timers lsa-group-pacing 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 441: Timers Spf

    EFAULT ALUE SPF schedule delay is 5 seconds. Hold time between two SPFs is 10 seconds. XAMPLE ALU(config-router ospf 30)# timers spf 20 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 442: Write Ospf

    ESCRIPTION This command is entered in the Router Configuration Mode. This command is used to view the OSPF running configuration. ARAMETERS None. XAMPLE ALU(config-router ospf 30)# write ospf Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 443: Multicast Routing

    Multicast Routing configuration as quick-start and reference information. The commands are described in alphabetical order. For more detailed information about Multicast Routing configuration, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 444: Pim Configuration Commands

    Address of the multicast group. group-address Clears the PIM states of the specified source (S) for given source-address group (G) i.e. (S,G) states. XAMPLE ALU# clear ip pim state-info Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 445: Ip Multicast-Routing

    This command is entered in the Router Configuration Mode. This command enables multicast routing and forwarding on OmniAccess 5510-AA/AB USG. ARAMETERS None. EFAULT Disabled by default. XAMPLE ALU(config)# ip multicast-routing Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 446: Ip Pim Bsr-Candidate

    Indicates the hash-mask-length. This value is used to select 0-32 one RP. Indicates the priority of the BSR router. 0-255 EFAULT ALUE None. XAMPLE ALU(config)# ip pim bsr-candidate FastEthernet 0 1 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 447: Ip Pim Dr-Priority

    Use this command to configure this interval (in seconds). ARAMETERS Parameter Description Denotes the interval between periodic join and prune 1-65535 messages. EFAULT ALUE The default message-interval is 60 seconds. XAMPLE ALU(config)# ip pim message-interval 30 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 448: Ip Pim Neighbor-Filter

    Parameter Description RP router address. ip-address This is used to give preference to static RP over dynamic RP. override EFAULT ALUE None. XAMPLE ALU(config)# ip pim rp-address 11.0.0.3 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 449: Ip Pim Rp-Candidate

    Name of the interface. interface-name access-list-name Name of a specific access list. Standard access-list number. 1-99 EFAULT ALUE None. XAMPLE ALU(config)# ip pim rp-candidate FastEthernet 0 group-list 30 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 450: Ip Pim Rp-Candidate-Priority

    PIM on an interface. After enabling this command, PIM starts sending hello packets to form neighborship. ARAMETERS None. EFAULT ALUE By default PIM is not enabled on an interface. XAMPLE ALU(config-if FastEthernet0)# ip pim sparse-mode Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 451: Ip Pim Spt-Threshold

    Name of a specific access list. standard access- list-name EFAULT ALUE Switch to SPT just after receiving first packet. That means ‘0’ Kbps. XAMPLE ALU(config)# ip pim spt-threshold 100 group-list 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 452: Ip Pim Query-Interval

    NO IP PIM SPARSE MODE no ip pim sparse-mode This command is entered in the Interface Configuration Mode. This command is used to disable PIM on an interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 453: Show Ip Pim Rp-Hash

    Uptime: 00:04:24, BSR Priority: 0, Hash Mask Length: 30 Next Bootstrap Message in 00:00:46 seconds Candidate RP: 2.2.2.1 (FastEthernet0), Group Acl: test Next Cand_RP_Advertisement in 00:00:35 seconds (config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 454: Show Ip Pim Interface

    ARAMETERS Parameter Description Name of the interface. interface-name XAMPLE ALU# show ip pim interface Address Interface Ver/ Nbr Query Mode Count Intvl Prior 2.20.1.1 FastEthernet0 v2/S 1 2.20.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 455: Show Ip Pim Neighbor

    Parameter Description Name of the interface. interface-name XAMPLE ALU#show ip pim neighbor PIM Neighbor Table Neighbor Interface Uptime/Expires DR Address Prio/Mode 2.2.2.3 FastEthernet0 18:28:59/00:01:37 v2 1/ Not DR Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 456: Show Ip Pim Rp Mapping

    Info source: 1.1.1.1 (?), via bootstrap, priority 0, holdtime = 53760 Uptime: 00:00:45, expires 14:55:15 Group(s) 228.0.0.0/8 RP 2.2.2.1 (?) v2 Info source: 2.2.2.1 (?), via bootstrap, priority 0, holdtime = 38400 Uptime: 00:03:55, expires 10:39:05 (config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 457: Show Ip Pim State-Info

    K - KeepAlive Timer Running, S - SPT bit set (8.0.0.1,226.1.1.25), NOT JOINED 00:00:04/00:00:00, flags:TK Register: PRUNE, RP 40.0.0.1, RST 00:01:03 Incoming interface: FastEthernet0, RPF neighbor 0.0.0.0 Downstream interface state: inherited_olist: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 458: Igmp Configuration Commands

    This command is entered in the Router Configuration Mode. This command enables multicast routing and forwarding on OmniAccess 5510-AA/AB USG. ARAMETERS None. EFAULT Disabled by default. XAMPLE ALU(config)# ip multicast-routing Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 459: Ip Igmp Join-Group

    Number of retransmission of group specific query. This is also called as robustness count. EFAULT ALUE The default last-member-query-count is 2. XAMPLE ALU(config-if FastEthernet0)# ip igmp last-member-query-count 3 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 460: Ip Igmp Last-Member-Query-Interval

    Denotes the interval at which the IGMP router sends IGMP 1-65535 general query messages. EFAULT ALUE The default query-interval is 125 seconds. XAMPLE ALU(config-if FastEthernet0)# ip igmp query-interval 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 461: Ip Igmp Query-Max-Response-Time

    ARAMETERS Parameter Description Querier time-out value. 60-300 EFAULT ALUE Default IGMP querier-timeout is 255 seconds. XAMPLE ALU(config-if FastEthernet0)# ip igmp querier-timeout 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 462: Ip Pim Sparse-Mode

    NO IP PIM SPARSE MODE no ip pim sparse-mode This command is entered in the Interface Configuration Mode. This command is used to disable IGMP on an interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 463: Show Ip Igmp Groups

    Displays groups on the specified interface. interface-name XAMPLE ALU# show ip igmp groups Interface Group-Address Last-Reporter Uptime Expires(sec:msec) FastEthernet0 224.1.1.1 3.3.3.4 0:0:51 217:89 VLAN1 224.0.1.40 5.5.5.5 4:12:42 147:509 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 464: Show Ip Igmp Interface

    Number of leave message on this interface = 0 Number of query messages sent on this interface = 1 Querier on this interface = 2.2.2.3 Interface DR is 2.20.1.1 Total groups on this interface Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 465: Multicast Global Commands

    ESCRIPTION This command is entered in the Super User Mode or Configuration Mode. This command resets the multicast traffic counters. ARAMETERS None. XAMPLE ALU# clear ip multicast traffic Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 466: Show Ip Mroute

    (*, 226.0.0.1), uptime 0:13:23, flags: J Incoming Interface: Tunnel23, RPF failures 0 Outgoing Interfaces (1): Vlan131 (10.1.1.245, 226.0.0.1), uptime 0:17:45, flags: RJ Incoming Interface: Null0, RPF failures 0 Outgoing Interfaces (1): Vlan131 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 467: Show Ip Multicast Traffic

    IP Multicast statistics: Rcvd: 4449 total, 838 link local Sent: 3334 forwarded, 0 send register 0 send assert, 3 first data pkt notice Errors: 1 rpf failure, 1 drop Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 468 Left running head: Chapter name (automatic) Multicast Routing Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 469: Policy Based Routing

    PBR configuration as quick-start and reference information. The commands are described in alphabetical order. For more detailed information about using and configuring PBR, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 470: Clear Ip-Policy Statistics

    This command is entered in the Configuration Mode. This command is used to create an IP policy. ARAMETERS Parameter Description Name for the IP policy being configured. name XAMPLE ALU(config)# ip-policy pbr1 ALU(config-ip-policy-pbr1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 471 Specifies the egress path of the packet. next-hop <ip-address> Example ALU(config-ip-policy-pbr1)# 10 match m1 m2 not m3 interface FastEthernet 0 next hop 1.2.2.1 ALU(config-ip-policy-pbr1)# 20 match m1 m2 next hop 1.2.2.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 472: Ip-Policy

    IP policy attached to an interface. NO RULE no rule <1-65535> This command is issued in the IP Policy Configuration Mode. The command deletes a rule corresponding to the rule number. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 473: Show Ip-Policy

    Displays the details of a specific IP name policy. XAMPLE ALU(config)# show ip-policy ! IP-Policy configuration ip-policy pbr1 10 match any m1 m2 interface FastEthernet0 next-hop 1.2.2.1 exit interface FastEthernet0 ip-policy pbr1 exit Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 474: Show Ip-Policy Statistics

    PBR - Policy Based Routed, Drop - Dropped 0 packets forwarded by best effort IP forwarding ip-policy pbr1 : PBR - 0 Drop - 0 0 hits on : 1 match any m1 next-hop 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 475: Virtual Routing And Forwarding

    For more detailed information on using and configuring the VRF-CE Protocol, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 476: Address Family

    The name of the VRF to which the vrf-name address family is to be associated. XAMPLE ALU(config)# router bgp 30 ALU(config-router bgp AS30)# address-family ipv4 unicast vrf ALU_vrf ALU(config-router-af-ucast)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 477: Address Family

    Address family modifier. unicast The name of the VRF to which the vrf-name address family is to be associated. XAMPLE ALU(config)# router rip ALU(config-router rip)# address-family ipv4 unicast vrf ALU_vrf Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 478: Arp

    ARP cache. ARAMETERS Parameter Description The name of the VRF for which the ARP vrf-name cache is to be cleared. XAMPLE ALU(config)# clear arp-cache vrf ALU-vrf Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 479: Clear Arp Traffic

    AS is cleared. Name of the VRF for which the BGP vrf-name connection is to be cleared. XAMPLE ALU(config)# clear ip bgp vrf ALU-vrf 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 480: Clear Ip Traffic

    IP routing table. ARAMETERS Parameter Description Name of the VRF for which the IP routing vrf-name table is to be cleared. XAMPLE ALU(config)# clear ip route vrf ALU-vrf * Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 481: Description

    ARAMETERS Parameter Description The descriptive text for the VRF. description-string XAMPLE ALU(config-vrf)# description alcatel-lucent-routing IP ROUTE ip route [vrf <vrf-name>] {destination network subnet- mask|destination network/prefix-length} {<gateway-ip- address>|<interface-name> [<gateway-ip-address>]}[<1-255>] ESCRIPTION This command is entered in the Configuration Mode. This command adds a static routing entry into the specified VRF routing table.
  • Page 482: Ip Vrf

    Hence, associate a VRF to an interface prior to IP address configuration. ARAMETERS Parameter Description The name of the VRF to be associated to an vrf-name interface. XAMPLE ALU(config-if atm0)# ip vrf forwarding ALU-vrf Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 483: Ping

    VRF on a interface associated with the VRF. IP address of remote host/router. ip-address Host name of the remote host/router. hostname XAMPLE ALU(config)# ping vrf ALU-vrf 1.2.3.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 484: Router Ospf

    Displays the ARP entries in the specified VRF. vrf-name XAMPLE ALU(config)# show arp vrf ALU-vrf Protocol Address Age (min) Hardware Addr Type Interface Internet 10.91.0.21 0004.9BE9.C4A8 ARPA FastEthernet0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 485: Show Arp Traffic

    ADJ count exceeded Errors: Req/Resp recvd without Mac on interface Req not sent because of no IP Address Req not sent becuase of no MAC Resp received without req Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 486: Show Ip Bgp

    Description If the VRF name is specified, it displays vrf-name the routes that belong to specified BGP communities for the specified VRF. XAMPLE ALU(config)# show ip bgp community Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 487: Show Ip Bgp Community-List

    ARAMETERS Parameter Description If the VRF name is specified, it displays vrf-name the flap statistics of BGP routes for the specified VRF. XAMPLE ALU(config)# show ip bgp flap-statistics Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 488: Show Ip Bgp Neighbors

    Parameter Description If the VRF name is specified, it displays vrf-name the information about the given peer group for the specified VRF. XAMPLE ALU(config)# show ip bgp peer-group Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 489: Show Ip Fib

    Branch delete : 30 Branch extends: 41 Branch coalesc: 30 System Adjacency Counters: Adjacencies : 4294967291 Adj reference : 106 Adj unrefer : 53 Adj Memory : 496 ALU(config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 490: Show Ip Protocols

    Address FiltIn FiltOut DistIn DistOut RmapIn RmapOut Weight 4.4.4.1 Routing for Networks: Routing Information Sources: Gateway Distance Last Update 4.4.4.1 00:02:12 Distance: external 20 internal 200 local 200 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 491: Show Ip Route

    10.0.0.0/24 is subnetted, 1 subnet 10.91.10.0 [0/0] is directly connected, Vlan2 44.0.0.0 is variably subnetted, 2 subnets, 2 masks 44.2.2.0/24 [0/0] is directly connected, atm0 44.2.2.2/32 [0/0] via 44.2.2.2, atm0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 492: Show Ip Traffic

    0 time exceed, 0 param probs, 0 source quench 0 redirects, 10 echo req, 0 echo rpy 0 timestamp req, 0 timestamp rpy 0 addr mask req, 0 addr mask rpy Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 493: Show Ip Vrf

    VRF. A detailed information of all the VRFs interfaces configured on all the interfaces. XAMPLE ALU(config)# show ip vrf interfaces ALU Interface IP Address Protocol atm0 1.1.1.1 ALU-vrf Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 494: Ssh

    Host name of the remote system. hostname The login/user name to be used. user-name SSH version number - version 1 or version {1|2} version 2. XAMPLE ALU(config)# ssh vrf ALU-vrf 10.91.0.25 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 495: Telnet

    VRF on a interface associated with the VRF. IP address of the host. ip-address Name of the host. hostname XAMPLE ALU(config)# traceroute vrf ALU-vrf 1.2.3.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 496 Left running head: Chapter name (automatic) Virtual Routing and Forwarding Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 497: Part 6 Network Security

    To switch to the beta version, import color def’ns from beta-colors.fm Part 6 Network Security Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 498 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 499: Network Address Translation

    This chapter provides a terse overview of the CLI syntax needed to configure the Source and Destination NAT. For more detailed information about using and configuring the NAT, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 500: Source Nat (Snat) Configuration Commands

    Type of NAT, here it is the SNAT. source-nat EFAULT ALUE None. XAMPLE ALU(config-nat-N1)# 10 match m1 source-nat Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 501: Source-Nat Host

    If no address is configured, the IP address of the egress interface on which the NAT policy is applied will be used. XAMPLE ALU(config-nat-N1)# match m1 source-nat host 192.168.10.91 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 502: Source-Nat Pool

    Type of NAT, here it is the SNAT. source-nat The name of the list. list-name EFAULT ALUE None. XAMPLE ALU(config-nat-N1)# match m1 source-nat pool l1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 503: Source-Nat Port-Range

    The upper port number. 2048-65535 EFAULT ALUE If no port range is specified, a default port range of 2048 – 65535 is used. XAMPLE ALU(config-nat-N1)# match m1 source-nat port-range 2048 6000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 504: Source-Nat Static

    Type of NAT, here it is the SNAT. source-nat Use this keyword to use the static NAT. static EFAULT ALUE By default, NAT enables dynamic mapping. XAMPLE ALU(config-nat-N1)# match m1 source-nat static Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 505: Destination Nat (Dnat) Configuration Commands

    The IP address of the host. ip-address The host name. host-name The name of the list. list-name EFAULT ALUE None. XAMPLE ALU(config-nat-N2)# match m1 destination-nat host 192.168.10.91 ALU(config-nat-N2)# match m1 destination-nat pool l1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 506: Port

    The name of the list. list-name The port number for DNAT. 1-65535 EFAULT ALUE None. XAMPLE ALU(config-nat-N2)# match m1 destination-nat host 192.168.10.91 port 100 ALU(config-nat-N2)# match m1 destination-nat pool l1 port 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 507: Destination-Nat Static

    Type of NAT, here it is the DNAT. destination-nat The name of the list. list-name Use this keyword to configure static DNAT. static EFAULT ALUE None. XAMPLE ALU(config-nat-N2)# match m1 destination-nat pool l1 static Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 508: Dnat

    NAT policy. ARAMETERS Parameter Description Name of the NAT policy. nat policy-name XAMPLE The following example clears the counters of NAT ‘N1’. ALU# clear ip nat statistics N1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 509: Clear Ip Nat Statistics

    This command is entered in the NAT Configuration Mode. Use this command to change the priority/order of a specific SNAT/DNAT rule configured. ARAMETERS Parameter Description Priority of the NAT policy rule. 1-65535 EFAULT ALUE None. XAMPLE ALU(config-nat-N1)# change 10 20 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 510: Debug Firewall Nat

    This command is entered in the Configuration Mode. This command is used to configure a NAT policy. This command enters the NAT configuration Mode. ARAMETERS Parameter Description Name of the NAT policy. nat policy-name XAMPLE ALU(config)# ip nat N1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 511: Ip Nat {In | Out

    ALU(config)# exit ALU(config)# ip nat n1 ALU(config-nat n1)# match m1 source-nat ALU(config)# exit ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# ip filter in f1 ALU(config-if FastEthernet0)# ip nat out n1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 512: Ip Nat Statistics {In|Out|Both

    This command is entered in the Configuration Mode. The "force" keyword will automatically detach the specified NAT policy from respective interfaces, and deletes the policy. This command when used also deletes all the associated NAT policy rules. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 513: No Ip Nat {In | Out

    This command is entered in the NAT Configuration Mode. Use this command to generate a numbering scheme for the SNAT/DNAT rules configured. This command resets the rule priorities in multiples of 10. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config-nat-N1)# renumber Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 514: Show Ip Nat

    2. The following example shows the configuration details of a specific NAT policy. ALU# show ip nat n1 ip nat n1 10 match all m1 source-nat 10 match m2 source-nat Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 515: Show Ip Nat Statistics

    Translated: 0, Bypassed: 0, PORTS Allocated: 0, Released: 0 20 match any m2 source-nat host 1.1.1.2 Translated: 0, Bypassed: 0, PORTS Allocated: 0, Released: 0 interface FastEthernet0 Out Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 516: Show Ip Nat Statistics

    Dropped: 0, Bypassed: 0, Enqueued: 0 10 match any m1 source-nat host 1.1.1.1 NATted Packets: 0 20 match any m2 source-nat host 1.1.1.2 NATted Packets: 0 interface FastEthernet0 out Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 517: Filter And Firewall

    CLIs. Refer to the “Common Classifiers” chapter to know more on Alcatel-Lucent’s Common Classifier CLI. All commands are described in alphabetical order. They do not follow the sequence of configuration. For more detailed information on using and configuring the above concepts, refer the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide.
  • Page 518: Filter Cli Commands

    In the above example, m4 has a priority 40. Use the “change“ keyword to change the priority of m4. ALU(config)# ip filter f1 ALU(config-filter-f1)# change 40 15 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 519: Clear Ip Filter Statistics

    Filter Configuration Mode. ARAMETERS Parameter Description Name for the filter being configured. name XAMPLE The Example below configures the IP filter f1 ALU(config)# ip filter f1 ALU(config-filter-f1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 520 ALU(config)# ip filter f1 ALU(config-filter-f1)# 10 match m1 permit log The example below configures a deny rule with reset option on traffic as defined in ALU(config-filter-f1)# 10 match m1 deny reset Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 521: Ip Filter {In | Out

    As a result, it reduces the complexity and time. Also, when "force" command is used to delete the filter, the filter gets removed from the interface it is attached to. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 522: No Ip Filter {In | Out

    ESCRIPTION This command is entered in the Filter Configuration Mode. Use this command to generate a numbering scheme for the filter rules configured. ARAMETERS None. XAMPLE ALU(config-filter-f1)# renumber Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 523: Show Ip Filter

    The following syntax displays the filter f1’s details: ALU(config-filter-f1)# show ip filter f1 ip filter f1 10 match any m1 permit default deny interface FastEthernet0 In, Stats Off Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 524: Show Ip Filter Statistics

    The following command displays the filter statistics: ALU(config)# show ip filter statistics FastEthernet 0 in ip filter f1 20 match any m1 permit Hits 0 default deny interface FastEthernet0 In, Stats On Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 525: Stateless

    This command is entered in the Filter Configuration Mode. This command sets the filter behavior to stateless. ARAMETERS None. EFAULT ALUE The filters on OmniAccess 5510-AA/AB USG are by default stateful. XAMPLE ALU(config-filter-f1)# stateless Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 526: Network Attack Prevention Configuration Commands

    This command is entered in the Configuration Mode. This command is used to configure an attack object to be attached to a firewall policy. ARAMETERS Parameter Description Name of the attack. name XAMPLE ALU(config-firewall)# attack A1 ALU(config-firewall-attack-A1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 527: Change

    P1 ip policy P1 10 match m1 attack atk drop 15 match m4 attack atk drop 20 match m2 attack atk reset 30 match m3 attack atk reset Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 528: Clear Firewall Session Session-Id

    ID. ARAMETERS Parameter Description Denotes the session ID. 0-128000 XAMPLE ALU(config)# clear firewall session session-id 200 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 529: Default

    Stateful and Stateless attacks): tcp_header_frag udp_header_frag tcp_fin_scan tcp_syn_flood 1000 icmp_ping_flood 1000 icmp_dest_unrch_storm 1000 icmp_ip_address_sweep 1000 port_scan 1000 udp_flood 1000 udp-port-loopback 1000 ip-tear-drop ip-tiny-frag icmp-ping-of-death 65507 ip-zero-length Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 530 NAT or DoS configuration. This is why you can see these attacks in the “show” output even when he has not configured them. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 531: Default Timeout

    ALU(config-firewall-session)# default timeout tcp 10 FIREWALL firewall ESCRIPTION This command is entered in the Configuration Mode. This command allows you to enter the firewall sub-configuration mode. ARAMETERS None. XAMPLE ALU(config)# firewall ALU(config-firewall)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 532: Firewall Policy {In|Out

    This is not set for protection by default on OmniAccess 5510-AA/AB USG, but you can turn it on by explicitly adding the above command in the user-defined attack prevention list. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# icmp-block-trace-route Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 533: Icmp-Dest-Unrch-Storm

    To set a threshold limit. threshold Number of packets permissible within a <1-4294967295> <1-4294967295> defined interval. EFAULT ALUE The default is 10 packets in 1000 milliseconds. XAMPLE ALU(config-firewall-attack-A1)# icmp-dest-unrch-storm threshold 11 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 534: Icmp-Ip-Address-Sweep

    Threshold limit set. threshold Number of packets permissible within a <1-4294967295> <1-4294967295> defined interval. EFAULT ALUE The default is 100 packets in 1000 milliseconds. XAMPLE ALU(config-firewall-attack-A1)# icmp-ip-address-sweep threshold 18 6 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 535: Icmp-Ping-Flood

    Threshold limit set. threshold Number of packets permissible within a <1-4294967295> <1-4294967295> defined interval. EFAULT ALUE The default is 100 packets in 1000 milliseconds. XAMPLE ALU(config-firewall-attack-A1)# icmp-ping-flood threshold 20 7 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 536: Icmp-Ping-Of-Death

    DoS setting. The above command can be included in the DoS prevention list to avoid this kind of attacks. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# icmp-redirect Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 537: Icmp-Router-Advertisement

    ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# icmp-smurf-attack Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 538: Ip-Land-Attack

    If the “default” keyword is not used, this attack can be prevented by including this in the user-defined attack protection list. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# ip-source-routing Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 539: Ip-Spoofing

    Teardrop attack tool attacks the vulnerability of the TCP/IP IP fragmentation re- assembly codes which do not properly handle the overlapping IP fragments. ARAMETERS None. EFAULT ALUE By default, this attack is turned on. XAMPLE ALU(config-firewall-attack-A1)# ip-tear-drop Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 540: Ip-Tiny-Frag

    By default, the maximum number of fragments allowed in the IP packet, is 50. • By default, the minimum size allowed in the IP fragment, is 64 bytes. XAMPLE ALU(config-firewall-attack-A1)# ip-tiny-frag min-frag-size 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 541: Ip-Zero-Length

    Also, the "force" keyword can be used to delete an attack object. The attack gets removed from any firewall policy it is attached to. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 542: No Debug Firewall

    "no firewall policy name" is issued at the top level and if this firewall policy is not bound to any interface, it deletes the firewall policy definition. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 543: No Policy

    This enters the firewall policy sub-configuration mode ARAMETERS Parameter Description Name of the firewall policy to be configured. name XAMPLE The following example depicts firewall policy configuration: ALU(config-firewall)# policy P1 ALU(config-firewall-P1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 544 In the following example, the attack object atk is configured to drop all the attacks and send acknowledgement such as an error report. ALU(config-firewall-P1)# match m1 attack atk reset Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 545: Port-Scan

    This command is entered in the Firewall Configuration Mode. Use this command to generate a numbering scheme for the firewall policy rules configured. ARAMETERS None XAMPLE ALU(config-firewall-P1)# renumber Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 546: Show Firewall Attack

    2 10 icmp-ping-flood 2 10 tcp-syn-flood 100 1000 5 udp-fraggle-attack udp-snork-attack tcp-fin-no-ack tcp-syn-fin tcp-null-scan tcp-invalid-urgent-offset tcp-xmas-scan ip-land-attack ip-source-routing icmp-block-trace-route ip-spoofing icmp-redirect icmp-router-advertisement tcp-header-frag ip-zero-length ip-tiny-frag icmp-ping-of-death 65507 ip-tear-drop Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 547: Show Firewall Attack System-Default

    10 1000 icmp-ping-flood 100 1000 tcp-syn-flood 100 1000 5 udp-fraggle-attack tcp-fin-no-ack tcp-syn-fin tcp-null-scan tcp-invalid-urgent-offset tcp-xmas-scan ip-land-attack icmp-echo-storm-attack udp-short-header tcp-header-frag ip-zero-length ip-tiny-frag 50 64 icmp-ping-of-death 50 65506 ip-tear-drop Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 548: Show Firewall Policy

    ARAMETERS None. XAMPLE ALU# show firewall policy system-default policy system-default 10 match all attack system-default drop system-traffic firewall policy system-default Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 549: Show Firewall Session

    The following syntax is used to view the details of firewall session ALU# show firewall session TCP Sessions UDP Sessions ICMP Sessions GRE Sessions Total Sessions Free Sessions : 16000 session_invalid_pak Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 550: Show Firewall Session Detail

    The following syntax is used to view the details of firewall session ALU(config)# show firewall session detail ID 70 ICMP timeout 28 secs, used by NAT Initiator: (10.91.1.108:13)=>(10.91.0.1:13) Responder: (10.91.0.1:34416)=>(10.91.1.108:34416) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 551: Show Firewall Session Proto

    The following syntax is used to view the details of firewall session with respect to ICMP protocol: ALU(config)# show firewall session proto icmp 70 ICMP timeout 19 secs, used by NAT Initiator: (10.91.1.108:13)=>(10.91.0.1:13) Responder: (10.91.0.1:34416)=>(10.91.1.108:34416) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 552: Show Firewall Session Destination

    Denotes the port number. 1-65535 Protocol type. gre|icmp|tcp|udp XAMPLE ALU(config-if FastEthernet0)# show firewall session destination ip 10.91.0.1 ID 70 ICMP timeout 25 secs, used by NAT Initiator: (10.91.1.108:13)=>(10.91.0.1:13) Responder: (10.91.0.1:34416)=>(10.91.1.108:34416) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 553: Show Firewall Session Source

    ACK are set for FIN.This leads to system crashing at times. To avoid this mishap, include the above command in the user-defined attack prevention list or just use the “default” keyword. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# tcp-fin-no-ack Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 554: Tcp-Fin-Scan

    This could lead to secure information also being passed through the filter. To retain security, this command also forms a part of the default attack prevention list. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# tcp-header-frag Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 555: Tcp-Invalid-Urgent-Offset

    Leads to inability to scan such packets. This attack can also be avoided by including this command in the user-defined prevention list or by the “default” keyword. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# tcp-null-scan Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 556: Tcp-Syn-Fin

    The above keyword is also turned on by default. If you wish to disable this, you can override this keyword and then turn it on when necessary by including this command in the user-defined attack prevention list. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# tcp-syn-fin Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 557: Tcp-Syn-Flood

    The default is 100 packets in 1000 milliseconds. XAMPLE Consider the following example, here if you do not explicitly provide the threshold value for the attack, the default value is taken: ALU(config-attack A4)# tcp-syn-flood Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 558: Tcp-Xmas-Scan

    Parameter Description Threshold limit set. threshold Number of packets permissible within a <1-4294967295> <1-4294967295> defined interval. EFAULT The default is 4 packets per 20 milliseconds. XAMPLE ALU(config-firewall-attack-A1)# udp-flood Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 559: Udp-Fraggle-Attack

    Number of packets permissible within a <1-4294967295> <1-4294967295> defined interval. EFAULT ALUE The default is 10 packets in 1000ms. XAMPLE ALU(config)# attack A4 ALU(config-attack A4)# udp-port-loopback threshold 30 13 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 560: Udp-Snork-Attack

    To avoid this Denial of Service overload attempt, this command is placed in the default prevention list. ARAMETERS None. XAMPLE ALU(config-firewall-attack-A1)# udp-snork-attack Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 561: Time-Range Cli Commands

    <hh:mm:ss> to <mm/dd/yyyy> hours:minutes:seconds Date in month/day/year. XAMPLE ALU(config-time-range-t1)# absolute 10:20:00 12/20/2003 to 13:15:00 4/15/2004 ALU(config-time-range t2)# periodic daily 08:00:00 to 19:00:00 ALU(config-time-range t3)# periodic weekly wednesday 10:00:00 to 13:30:00 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 562: No Time-Range

    This command is entered in the Configuration Mode. This command is used to configure a time-range object that can be used across applications. ARAMETERS Parameter Description Name of the time-range. name XAMPLE ALU(config)# time-range t1 ALU(config-time-range-t1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 563: Alg Cli Commands

    DNS ALG debug counters. ARAMETERS None. XAMPLE ALU(config)# show firewall alg dns debug-counters Total malloc operations Total failed malloc operations Total memory release operations Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 564: Show Firewall Alg Dns Statistics

    Configuration Mode. This command is used to view the FTP ALG debug counters. ARAMETERS None. XAMPLE ALU(config)# show firewall alg ftp debug-counters Total malloc operations Total failed malloc operations Total memory release operations Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 565: Show Firewall Alg Ftp Statistics

    RPC ALG debug counters. ARAMETERS None. XAMPLE ALU(config)# show firewall alg rpc debug-counters Total malloc passed Total malloc failed Total memory free count Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 566: Show Firewall Alg Rpc Statistics

    This command is entered in the Super User Mode or Configuration Mode. This command is used to view the RTSP ALG debug counters. ARAMETERS None. XAMPLE ALU(config)# show firewall alg rtsp debug-counters Currently registered RTSP families Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 567: Show Firewall Alg Rtsp Statistics

    Total malloc passed, sip sessions and calls Total malloc failed Total memory free count, sip sessions and calls Total sip packets translated Total sdp packets translated Total sip packets retransmitted Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 568: Show Firewall Alg Sip Statistics

    TFTP ALG debug counters. ARAMETERS None. XAMPLE ALU(config)# show firewall alg tftp debug-counters Total malloc operations Total failed malloc operations Total memory release operations Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 569: Show Firewall Alg Tftp Statistics

    This command is entered in the Match-list mode. This command is used to enable DNS, FTP, NFS, RPC-Portmap, RTSP or SIP ALG. ARAMETERS Parameter Description Type of ALG service. dns|ftp|nfs|sip|rtsp XAMPLE ALU(config)# match-list m1 ALU(config-match-list-m1)# tcp any any service dns Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 570: Udp Any Any Service

    This command is entered in the Match-list mode. This command is used to enable DNS, NFS, RPC-Portmap, TFTP, or SIP ALG. ARAMETERS Parameter Description Type of ALG service. dns|nfs|sip|tftp XAMPLE ALU(config)# match-list m1 ALU(config-match-list-m1)# udp any any service sip Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 571: Customized-Service Rule Based Alg Configuration Commands

    This command is entered in the Configuration Mode. This command is used to configure ALG. This also enters into customized service configuration mode. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config)# customized-service Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 572: No Rule

    To Create a ALG Rule: [<1-65535>] match [any|all] <match-list name>... service {service-name|alcatel-tftp|dns|ftp|none|rpc|rtsp|sip|tftp} This command creates a rule for mapping ALG action for a well known service to a non-standard port or disable a well known service on its well known port.
  • Page 573: Noe Alg Configuration Commands

    ARAMETERS Parameter Description IP address configured for the NOE phone-ip-address phone. MAC address configured for the NOE phone-mac-address phone. XAMPLE ALU(config)# clear firewall alg noe subaddress-mapping Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 574: Match Service Alcatel-Tftp

    Name of the match-list. match-list name XAMPLE ALU(config)# match-list m1 ALU(config-match-list-m1)# udp any any service tftp ALU(config)# customized-service ALU(config-customized-service)# 10 match m1 service alcatel- tftp Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 575: Nat-Ip Reserve-Port-Range

    Total malloc failed Total memory free count, UA sessions and calls Total UA packets translated : 7690 Total sdp packets translated : 26 Total UA packets retransmitted : 330 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 576: Show Firewall Alg Noe Statistics

    RTP sessions created RTP sessions released RTP sessions terminated from UA time-outs : 0 RTCP pinholes outstanding RTCP sessions created RTCP sessions released RTCP sessions terminated from UA time-outs: 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 577: Show Firewall Alg Noe Subaddress-Mapping

    Note: There is no guarantee of giving sequential sub address to phones and this command will not show any output if NAT is not enabled on OmniAccess 5510-AA/AB USG. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 578: Udp Any Any Type Noe

    This command is entered in the match-list mode. Use this command to classify the NOE signalling traffic. ARAMETERS None. XAMPLE ALU(config)# match-list m1-filter ALU(config-match-list-m1-filter)# udp any any type noe Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 579: Ip Security - Virtual Private Network

    IPsec, refer OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Common Classification (CC) commands are used in these CLIs. Refer to the “Common Classifiers” chapter in this guide to know more. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 580: Authentication

    This command is entered in the Super User Mode or Configuration Mode. This command is used to reset the IPsec SA related counters for Encapsulation, Encryption, Authentication, and Error. ARAMETERS None. XAMPLE ALU# clear crypto ipsec counters Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 581: Clear Crypto Ipsec Sa

    This command is entered in the Configuration Mode. This command deletes the specified CA certificate. ARAMETERS Parameter Description The CA certificate name. name XAMPLE ALU(config)# crypto ca-cert ALUca delete Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 582: Crypto Ca Identity

    Note: The crypto certificates will take into effect only after issuing the ‘refresh’ command. ARAMETERS None. XAMPLE ALU(config)# crypto certificate-database refresh Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 583: Crypto Certificate-Request Export

    Name of the RSA key previously key-name <name> generated. Name of the CA identity previously ca <name> configured. XAMPLE ALU(config)# crypto certificate-request req_Simpson generate key-name exampleKey ca ALUCA Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 584: Crypto Crl-Check Strict

    EFAULT ALUE The default value for DPD timeout is three times that of the DPD interval specified. XAMPLE ALU(config)# crypto ike dpd interval 10 timeout 35 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 585: Crypto Ike Identity

    IKE identity. Entering this command changes the mode to IKE identity mode. ARAMETERS Parameter Description Identifies the IKE identity. name XAMPLE ALU(config)# crypto ike identity exampleidentity ALU(config-ike-identity-exampleidentity)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 586: Crypto Ike Key

    Edits or modifies the IKE keys, which are already force configured. EFAULT ALUE There is no default pre-shared authentication key. XAMPLE ALU(config)#crypto ike key top_secret1612 peer 10.10.1.2 ALU(config)#crypto ike key "!netsecret!" peer 202.54.30.100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 587: Crypto Ike Policy

    This command is entered in the Configuration Mode. This command configures an IKE policy. ARAMETERS Parameter Description IKE policy name. name XAMPLE ALU(config)# crypto ike policy P1 ALU(config-crypto-ike-policy-P1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 588: Crypto Ipsec Transform-Set

    Authentication or encryption algorithm. algo EFAULT ALUE OmniAccess 5510-AA/AB USG will have a default transform-set configuration with parameters esp-md5-des and esp-sha1-des XAMPLE ALU(config)# crypto ipsec transform-set netset esp-sha1-aes256 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 589: Crypto Key Export Rsa

    Name of the RSA key pair. name FPkey file path. To copy the certificate fpkey <file-path> into the front panel USB memory. XAMPLE ALU(config)# crypto key export rsa examplekey tftp: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 590: Crypto Key Generate Rsa

    2000. XAMPLE ALU(config)#crypto key generate rsa 1024 exampleKey % The generated keys will be named examplekey ... starting key generation. Please wait... % Keys successfully generated Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 591: Crypto Key Import Rsa Name

    This command is entered in the Configuration Mode. This command is used to enable or disable NAT traversal for IPsec on the OmniAccess 5510-AA/AB USG. ARAMETERS None. EFAULT ALUE By default, NAT Traversal is enabled. XAMPLE ALU(config)# crypto nat-traversal disable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 592: Crypto Map

    ARAMETERS Parameter Description Name of the crypto map. map-name XAMPLE ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# crypto map exampleMap Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 593: Crypto Peer-Certificate Import

    Directly enter or paste the certificate certificate-content after entering the command. FPkey file path. To copy the certificate fpkey <file-path> into the front panel USB memory. XAMPLE ALU(config)# crypto peer-certificate cert_Bouvier import ftp: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 594: Crypto Peer-Certificate Delete

    This command is entered in the Configuration Mode. This command deletes the specified RSA key pair. ARAMETERS Parameter Description The RSA key name. name XAMPLE ALU(config)# crypto rsa-key examplekey delete Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 595: Crypto Signed-Cert

    Dead Peer. EFAULT ALUE The default value for DPD timeout is three times that of the DPD interval specified. XAMPLE ALU(config-crypto-map-exampleMap)# dpd delay 15 timeout 60 ALU(config-crypto-map-exampleMap)# dpd NONE Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 596: Ike-Identity

    Directly enter or paste the certificate certificate-content content after the command. FPkey file path. To copy the certificate fpkey <file-path> into the front panel USB memory. XAMPLE ALU(config-ca-ALUCA)# import ca-cert ftp: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 597: Import Crl

    Directly enter or paste the CRL after the certificate-content command. FPkey file path. To copy the certificate fpkey <file-path> into the front panel USB memory. XAMPLE ALU(config-ca-ALUCA)# import crl ftp: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 598: Import Signed-Cert

    Directly enter or paste the certificate certificate-content conetent after the command. FPkey file path. To copy the certificate fpkey <file-path> into the front panel USB memory. XAMPLE ALU(config-ca-ALUCA)# import signed-cert cert_Simpson ftp: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 599: Ipsec Security-Association Lifetime

    This command is entered in the IKE Policy Mode. This configures IKE lifetime value. ARAMETERS Parameter Description Specify the IKE lifetime in seconds. 540-86400 EFAULT ALUE Default IKE lifetime is 86400 seconds. XAMPLE ALU(config-crypto-ike-policy-P1)# lifetime seconds 1000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 600: Lifetime

    This command is entered in the Crypto Map Configuration Mode. This command attaches a match-list to a crypto map. ARAMETERS Parameter Description Name of the match-list. name XAMPLE ALU(config-crypto-map-exampleMap)# match matchlist1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 601: My-Ca

    This command is entered in the IKE-identity mode. This command specifies the imported signed certificate to be used during IKE negotiation. ARAMETERS Parameter Description Name of imported signed certificate name used during IKE negotiation. XAMPLE ALU(config-ike-identity-exampleidentity)# my-cert cert_Simpson Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 602: My-Id

    NO CRYPTO IKE KEY no crypto ike key <key-string> [vrf <name>] peer <peer-address> [force] This command is entered in the Configuration Mode. This command removes the configured pre-shared key. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 603: No Crypto Ike Policy

    NO LIFETIME SECONDS no lifetime seconds This command is entered in the IKE Policy Configuration Mode. The ‘no’ command resets the IKE lifetime to its default. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 604: No Match

    'default' transform set. Note: A transform-set must be first detached from the crypto map to delete it globally. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 605: No Crypto Ipsec Transform-Set

    You can attach a maximum of four peers to a crypto map. ARAMETER parameter Description IP address of the peer. ip-address XAMPLE ALU(config-crypto-map-exampleMap)# peer 100.10.61.20 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 606: Peer-Ca

    This can be used if a trusted peer is not enrolled to any of the CAs. ARAMETER parameter Description Name of the self signed peer certificate. name XAMPLE ALU(config-ike-identity-exampleidentity)# peer-cert cert_robert Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 607: Peer-Id

    ARAMETER Parameter Description group1|group2|group5 Name of the PFS group. EFAULT ALUE If the PFS group is not explicitly configured, the default group2 is used. XAMPLE ALU(config-crypto-ike-policy-P1)# pfs group1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 608: Proposal

    XAMPLE ALU(config)# show crypto crypto ike identity exampleIdentity peer-id user-fqdn fred@flintstones.com my-id fqdn @flintstones.com my-cert cert_flintstones crypto ike key topSecret peer 100.1.200.4 crypto ike key anotherTopSecret peer 126.2.34.68 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 609 ! Applied to : FastEthernet0 interface FastEthernet0 crypto map exampleMap !crypto ipsec profile default ike-policy default transform-set default pfs group2 lifetime seconds 28800 ! Not Applied to Any Interface Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 610: Show Crypto Ca-Cert

    10:4b:1a:98:c2:7d:b4:d0:cd Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: 05:98:D2:25:D3:18:12:A1:C7:4B:7A:98:D2:D8:25:73:2B:6B:AE:B1 X509v3 Authority Key Identifier: keyid:05:98:D2:25:D3:18:12:A1:C7:4B:7A:98:D2:D8:25:73:2B:6B:AE:B1 DirName:/CN=CA_0x01/O=ALU serial:00 X509v3 Basic Constraints: CA:TRUE Signature Algorithm: md5WithRSAEncryption 0c:0b:92:9c:1d:60:ac:62:e0:7f:f3:1d:9c:7b:e8:de:67:09: 43:a1:2e:47:d1:78:c1:17:f6:0c:aa:ef:51:55:e2:9b:5f:8a: 0e:9f:ba:51:55:57:48:2b:4c:8f:f7:6b:7c:65:4b:cf:99:b2: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 611: Show Crypto Ca Identity

    ALU(config)# show crypto ca identity crypto ca identity SomeOtherCA subject-name /O=ALU/C=IN/CN=CM Burns crypto ca identity ALUCA subject-name /CN=Bart Simpson/O=ALU/C=US ALU(config)# show crypto ca identity ALUCA crypto ca identity ALUCA subject-name /CN=Bart Simpson/O=ALU/C=US Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 612: Show Crypto Certificate-Request

    Exponent: 65537 (0x10001) Attributes: a0:00 Signature Algorithm: md5WithRSAEncryption 57:7b:73:45:07:37:a3:c6:a3:fc:46:5d:a6:c7:00:b1:2c:c8: 15:00:8f:ef:47:c5:0d:fa:81:a3:82:90:15:76:ad:10:42:ef: 68:a5:58:5a:e8:7b:17:85:d3:2b:f5:c5:ca:ca:db:c1:f0:d5: a6:87:b6:0b:13:a2:35:2f:91:cb ALU(config)# show crypto certificate-request req_Simpson pem -----BEGIN CERTIFICATE REQUEST----- MIHtMIGYAgEAMDMxFTATBgNVBAMTDEJhcnQgU2ltcHNvbjENMAsGA1UEChMETmV0 RDELMAkGA1UEBhMCVVMwXDANBgkqhkiG9w0BAQEFAANLADBIAkEAuvOvzwlJ9O8T 36fj7igyte8G4vjJMW1ERIHSP0mCyWta0XPQe68/XoI0FVRJp9NeaSnEclclau4C +CzdWS8DrQIDAQABoAAwDQYJKoZIhvcNAQEEBQADQQBXe3NFBzejxqP8Rl2mxwCx LMgVAI/vR8UN+oGjgpAVdq0QQu9opVha6HsXhdMr9cXKytvB8NWmh7YLE6I1L5HL -----END CERTIFICATE REQUEST----- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 613: Show Crypto Crl Ca

    45:6b:da:5f:10:09:77:7c:16:1e:a4:c2:aa:b6:3c:04:d1:ca: 4c:bc:9c:74:07:a7:a4:8a:09:cc:ad:e0:8b:9c:34:9d:05:c0: 63:3b:d7:01:9c:e0:29:44:38:e4:f8:e9:81:69:13:92:f4:14: f2:a6:7a:75:35:96:f5:12:3f:77:32:ef:c2:a7:28:4b:81:69: 10:a5:05:0d:dd:2f:73:20:70:58:b5:d9:2f:d9:13:c8:c1:20: c6:f7:34:c9:c0:23:06:b4:32:6c:65:48:06:78:18:48:fe:78: ab:ba:5c:a3:f5:0b:c8:64:95:5b:a6:27:c1:43:ca:d9:f5:d0: bd:5c EX:2 ALU(config)# show crypto crl ca ALUCA pem -----BEGIN X509 CRL----- MIIBDzB6MA0GCSqGSIb3DQEBBAUAMCExEDAOBgNVBAMUB0NBXzB4MDExDTALBgNV BAoTBE5ldGQXDTA2MDEwOTExNDYzN1oXDTA2MDIwODExNDYzN1owKDASAgEBFw0w NjAxMDkxMTQ2MTJaMBICAQIXDTA2MDEwOTExNDYxNlowDQYJKoZIhvcNAQEEBQAD gYEARWvaXxAJd3wWHqTCqrY8BNHKTLycdAenpIoJzK3gi5w0nQXAYzvXAZzgKUQ4 5PjpgWkTkvQU8qZ6dTWW9RI/dzLvwqcoS4FpEKUFDd0vcyBwWLXZL9kTyMEgxvc0 ycAjBrQybGVIBngYSP54q7pco/ULyGSVW6YnwUPK2fXQvVw= -----END X509 CRL----- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 614: Show Crypto Ike Identity

    DN /CN=Bart Simpson/O=ALU/C=US my-cert cert_Simpson ALU(config)# show crypto ike identity exampleIdentity crypto ike identity exampleIdentity peer-id user-fqdn selma_bouvier@ALU.com peer-ca CN=ALU, OU=Certificate Authority, C=US my-id DN /CN=Bart Simpson/O=ALU/C=US Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 615: Show Crypto Ike Key

    The peer address. peer-address XAMPLE ALU(config)# show crypto ike key crypto ike key top_secret1612 peer 10.10.1.2 ALU(config)# show crypto ike key 3.3.3.3 crypto ike key linux123 peer 3.3.3.3 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 616: Show Crypto Ike Policy

    ALU(config)# show crypto ike policy ike1 crypto ike policy ike1 proposal sha1-aes128 ipsec security-association lifetime seconds 28800 lifetime seconds 86400 pfs group2 authentication pre-shared ! Policy in Use (by 1 cryptomaps/ipsec-profiles) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 617: Show Crypto Ipsec Sa

    ESP spi:0xc3fb59c time-left:28793secs/0kb esp-sa-id:12 Decaps:7 Decrypt:7 Auth:7 Errors:0 ********OUTBOUND******** ESP Algo:crypt:DES-CBC len:64 auth:SHA1-HMAC len:160 TUNNEL MODE Replay Detection Enabled: Yes ESP spi:0x541a7498 time-left:28793secs/0kb esp-sa-id:16 Encaps:7 Encrypt:7 Auth:7 Errors:0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 618: Show Crypto Ipsec Transform-Set

    XAMPLE ALU(config)# show crypto ipsec transform-set !crypto ipsec transform-set default esp-md5-des esp-sha1-des crypto ipsec transform-set ts1 esp-md5-des ALU(config)# show crypto ipsec transform-set ts1 crypto ipsec transform-set ts1 esp-md5-des Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 619: Show Crypto Map

    ALU(config)# show crypto map examplemap crypto map examplemap ipsec-ike P1 peer 10.10.10.1 match m1 transform-set default pfs group2 ! Applied to : FastEthernet0 interface FastEthernet0 crypto map examplemap Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 620: Show Crypto Peer-Certificate

    Subject: C=US, ST=Bedrock, CN=Fred Flintstone/ emailAddress=fred@flintstones.com Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public Key: (1024 bit) Modulus (1024 bit): 00:cc:77:33:35:10:2c:90:6a:7d:ba:08:5b:97:68: eb:ea:91:bb:e2:b7:ac:9d:42:95:36:3a:db:ab:d3: 38:04:38:9b:34:18:31:22:69:78:de:11:37:7f:1e: 7f:10:9b:ba:96:60:e3:dd:bd:74:93:cf:dc:ad:c5: a7:ca:69:7f:d1:77:33:38:6a:66:89:07:66:d2:08: d4:b8:98:3f:e0:99:11:f8:3f:78:9b:27:51:8d:ee: 5e:e7:2a:5a:3a:d2:dc:dc:f7:45:b9:1e:8e:c2:ed: 2a:5e:a5:29:03:3d:ab:6e:2d:fd:6c:eb:c5:72:a8: 54:44:a6:03:70:4e:d0:38:33 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 621 26:30:c6:19:38:31:62:12:70:5f:00:e7:80:01:2c:8a:da:d5: e0:e5 ALU(config)# show crypto peer-certificate cert_fred pem -----BEGIN CERTIFICATE----- MIIC7DCCAlWgAwIBAgIBADANBgkqhkiG9w0BAQQFADBeMQswCQYDVQQGEwJVUzEQ MA4GA1UECBMHQmVkcm9jazEYMBYGA1UEAxMPRnJlZCBGbGludHN0b25lMSMwIQYJ KoZIhvcNAQkBFhRmcmVkQGZsaW50c3RvbmVzLmNvbTAeFw0wNjA2MjIwNjU2MTNa Fw0wNjA3MjIwNjU2MTNaMF4xCzAJBgNVBAYTAlVTMRAwDgYDVQQIEwdCZWRyb2Nr MRgwFgYDVQQDEw9GcmVkIEZsaW50c3RvbmUxIzAhBgkqhkiG9w0BCQEWFGZyZWRA ZmxpbnRzdG9uZXMuY29tMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDMdzM1 ECyQan26CFuXaOvqkbvit6ydQpU2Otur0zgEOJs0GDEiaXjeETd/Hn8Qm7qWYOPd vXSTz9ytxafKaX/RdzM4amaJB2bSCNS4mD/gmRH4P3ibJ1GN7l7nKlo60tzc90W5 Ho7C7SpepSkDPatuLf1s68VyqFREpgNwTtA4MwIDAQABo4G5MIG2MB0GA1UdDgQW BBSogH5UY2F2Zt7gmGwQMW3rHp1MRjCBhgYDVR0jBH8wfYAUqIB+VGNhdmbe4Jhs EDFt6x6dTEahYqRgMF4xCzAJBgNVBAYTAlVTMRAwDgYDVQQIEwdCZWRyb2NrMRgw FgYDVQQDEw9GcmVkIEZsaW50c3RvbmUxIzAhBgkqhkiG9w0BCQEWFGZyZWRAZmxp bnRzdG9uZXMuY29tggEAMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQEEBQADgYEA LbSv78slef4RmoUupe8nnIchAMgZiRkFrmov0ALfunDprIEp8v/c2jXk0EPs7Hxz JMlS2MkKkEBvZN8NZRa/liL7BvtrCxckwi4zCy32duyO557MTsb6JaJ/SnnJulVn qXROXjD/NxOUzdtHJjDGGTgxYhJwXwDngAEsitrV4OU= -----END CERTIFICATE----- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 622: Show Crypto Rsa-Key

    -----BEGIN RSA PRIVATE KEY----- MIIBOwIBAAJBALrzr88JSfTvE9+n4+4oMrXvBuL4yTFtRESB0j9JgslrWtFz0Huv P16CNBVUSafTXmkpxHJXJWruAvgs3VkvA60CAwEAAQJATCC1Q6p1qj68qgOU5kMK O1mlRUGns+/Zr8fplInbrybL7aUyw0ZbOxwR47nhv2cPJmBEVYBgD3MJBpmoCoQ3 JQIhAPQF4cc793YnqQjDmMZlrU5EgW0+iTv7tZhBfu9Be6hzAiEAxCC2wzozczYb Vu34ghDwp8Bcr5dyRH1qqKXAWfhjO18CIHy5WOo1a0lYAhy5pKebJpZ/i0ukEA65 m9qjd1aguKyjAiEAsZOVJsppjyUsN9cbLFi+LITE5s9OzKhpi+0Xbd6xqi0CIQCR p2uSbE2LoC4r3XovZoVF1mLzZLrC3WZcMKRk0qeO0Q== -----END RSA PRIVATE KEY----- ALU(config)# show crypto rsa-key exampleKey public-key -----BEGIN PUBLIC KEY----- MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBALrzr88JSfTvE9+n4+4oMrXvBuL4yTFt RESB0j9JgslrWtFz0HuvP16CNBVUSafTXmkpxHJXJWruAvgs3VkvA60CAwEAAQ== -----END PUBLIC KEY----- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 623: Show Crypto Signed-Cert

    RSA Public Key: (512 bit) Modulus (512 bit): 00:ba:f3:af:cf:09:49:f4:ef:13:df:a7:e3:ee:28: 32:b5:ef:06:e2:f8:c9:31:6d:44:44:81:d2:3f:49: 82:c9:6b:5a:d1:73:d0:7b:af:3f:5e:82:34:15:54: 49:a7:d3:5e:69:29:c4:72:57:25:6a:ee:02:f8:2c: dd:59:2f:03:ad Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: CA:FALSE Netscape Comment: OpenSSL Generated Certificate X509v3 Subject Key Identifier: 88:75:2D:47:AC:E8:AB:C3:5F:9F:E1:93:6B:7E:07:9C:A3:B0:24:CB Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 624 82:79:b9:43:05:26:b8:34:cc:59:ee:b6:0b:82:4b:a2:70:2a: 2a:72:4c:1a:c7:a8:74:30:fb:24:52:21:b9:2f:ef:b9:56:ae: f1:45:75:0b:46:2f:e4:94:ec:8c:b6:99:47:a8:68:c3:a8:0c: e3:56:f0:bc:54:53:02:ed:c0:17:1e:72:be:7b:fd:11:76:91: 05:db ALU(config)# show crypto signed-cert cert_Simpson pem -----BEGIN CERTIFICATE----- MIICLTCCAZagAwIBAgIBCDANBgkqhkiG9w0BAQQFADAhMRAwDgYDVQQDFAdDQV8w eDAxMQ0wCwYDVQQKEwROZXRkMB4XDTA2MDEyNzA5MjIwM1oXDTA3MDEyNzA5MjIw M1owMzELMAkGA1UEBhMCVVMxDTALBgNVBAoTBE5ldEQxFTATBgNVBAMTDEJhcnQg U2ltcHNvbjBcMA0GCSqGSIb3DQEBAQUAA0sAMEgCQQC686/PCUn07xPfp+PuKDK1 7wbi+MkxbUREgdI/SYLJa1rRc9B7rz9egjQVVEmn015pKcRyVyVq7gL4LN1ZLwOt AgMBAAGjgaYwgaMwCQYDVR0TBAIwADAsBglghkgBhvhCAQ0EHxYdT3BlblNTTCBH ZW5lcmF0ZWQgQ2VydGlmaWNhdGUwHQYDVR0OBBYEFIh1LUes6KvDX5/hk2t+B5yj sCTLMEkGA1UdIwRCMECAFAWY0iXTGBKhx0t6mNLYJXMra66xoSWkIzAhMRAwDgYD VQQDFAdDQV8weDAxMQ0wCwYDVQQKEwROZXRkggEAMA0GCSqGSIb3DQEBBAUAA4GB AAwwOpa7Kr5sU0e5XbRAHQ5KhfOZV4IHWKG/9jY6A5uBej1s+rckcHjEFXVKWGmt qj2C8a4adoJ5uUMFJrg0zFnutguCS6JwKipyTBrHqHQw+yRSIbkv77lWrvFFdQtG L+SU7Iy2mUeoaMOoDONW8LxUUwLtwBcecr57/RF2kQXb -----END CERTIFICATE----- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 625: Show Running-Config

    ! Policy in Use (by 1 cryptomaps/ipsec-profiles) crypto ike policy test proposal sha1-aes128 ipsec security-association lifetime seconds 28800 lifetime seconds 86400 pfs group2 crypto ike policy P1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 626 No Peer Defined No Match-List defined transform-set default pfs group2 ! Not Applied to Any Interface crypto ipsec profile pf1 ! Not Applied to Any Interface !QoS Configuration --More-- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 627: Subject-Name

    Description Name of the transform set. name EFAULT ALUE If no transform-set is attached to a crypto map, by default, ‘Default’ transform-set is used. XAMPLE ALU(config-crypto-map-exampleMap)# transform-set netset Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 628: Ipsec Tunnel Interface Cli Commands

    Name of the IKE identity. EFAULT ALUE IKE identity should only be attached to an IPsec profile if the Authentication type is ‘rsa-sig’ XAMPLE ALU(ipsec-profile-PF1)# ike-identity ID01 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 629: Ike-Policy

    This command is entered in the Configuration Mode. This command is used to configure a tunnel interface. ARAMETERS Parameter Description The number specified for the tunnel. 0-14487 EFAULT ALUE None. XAMPLE ALU(config)# interface Tunnel 1 ALU(config-if Tunnel1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 630: Ip Address

    ALUE Default IKE policy: ‘default’ ike policy, Default transform set: ‘default’ transform set. Default PFS group: pfs group2. Default lifetime in seconds: 28800 XAMPLE ALU(config-if Tunnel1)# ipsec-profile PF1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 631: Lifetime

    EFAULT ALUE Lifetime has a default value of 28800 seconds. There is no default value for lifetime in Kilobytes. XAMPLE ALU(ipsec-profile-PF1)# lifetime seconds 1000 ALU(ipsec-profile-PF1)# lifetime kilobytes 1005236 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 632: Mode

    This command is entered in the IPsec Profile Configuration Mode. The ‘no’ command detaches the specified IKE policy attached to the profile. An IKE policy must be first detached from the profile to delete it globally. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 633: No Ipsec-Profile

    NO TUNNEL SOURCE no tunnel source {<ip-address>|<interface-name>} This command is entered in the Interface Configuration Mode. The “no” command removes the configured source IP address of the tunnel. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 634: Pfs

    Parameter Description group1|group2|group5 Name of the PFS group. EFAULT ALUE If no PFS group is attached to an IPsec profile, group2 PFS is used. XAMPLE ALU(ipsec-profile-PF1)# pfs group2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 635: Show Crypto Ipsec Profile

    ! Not Applied to Any Interface crypto ipsec profile PF1 ike-policy secret transform-set transet1 ike-identity ID01 pfs group2 lifetime seconds 28800 ! Applied to: interface Tunnel1 ipsec-profile PF1 ALU(config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 636: Shutdown

    Parameter Description name Name of the transform-set. EFAULT ALUE If no transform set is attached to an IPsec profile, ‘default’ transform set is used. XAMPLE ALU(ipsec-profile-PF1)# transform-set TS1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 637: Tunnel Destination

    Description Source IP address of the tunnel. ip-address Name of the interface. interface-name EFAULT ALUE None. XAMPLE ALU(config-if Tunnel1)# tunnel source 2.2.2.1 ALU(config-if Tunnel1)# tunnel source FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 638 Left running head: Chapter name (automatic) IP Security - Virtual Private Network Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 639: Intrusion Detection/Intrusion Prevention System

    For more detailed information on using and configuring IDS/IPS, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 640: Clear Firewall Intrusion Snort Statistics

    The preprocessor that is used for stream4 reassembly. XAMPLE ALU#clear firewall intrusion snort statistics preprocessor http-inspect Note: Currently, preprocessor attacks of type rpc and stream4 is not supported. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 641: Clear Firewall Intrusion Snort Statistics Rule

    Clears the statistics of the snort rules class-type <name> belonging to a specified class type. Clears the snort rule statistics of a specific priority {high|low|medium} priority. XAMPLE ALU#clear firewall intrusion snort statistics rule all Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 642: Debug Trace Firewall Intrusion Selector

    IDS/IPS on OmniAccess 5510- AA/AB USG. ARAMETER Parameter Description Source address. saddr Destination address. daddr Protocol number. protocol Source port. sport Destination port. dport XAMPLE ALU# debug firewall intrusion Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 643: Firewall Policy {In | Out

    Name of the firewall policy. policy name Note: Firewall policy will take effect once it is attached to an interface. XAMPLE ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# firewall policy in P1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 644: Intrusion Sensor

    ESCRIPTION This command is entered in the Firewall configuration mode. This command enters the snort configuration mode. ARAMETER None. XAMPLE ALU(config)# firewall ALU(config-firewall)# intrusion snort ALU(config-firewall-intrusion-snort)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 645: Match Intrusion {Detection | Prevention

    <number>|sport <number>|dport <number>][output|permanent]|all [detail-level]} This command is entered in the Super User Mode or the Configuration Mode. Use this command to turn off the debugging functionality for IDS/IPS. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 646: No Intrusion Sensor

    This command is entered in the Intrusion Snort Configuration Mode. Use this command to manually rebuild the signature database. ARAMETER Parameter Description Version of the signature database. version-number XAMPLE ALU(config-firewall-intrusion-snort)#rebuild 2.3.0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 647: Rollback

    Name of the Snort rule category. category <name> Name of the Snort rule class type. class-type <name> Snort rule priority: low, high or medium. priority {high|low|medium} XAMPLE ALU(config-firewall-intrusion-snort)#rule detection category attack-responses Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 648: Rule Disable

    Name of the Snort rule class type. class-type <name> Snort rule priority: low, high or medium. priority {high|low|medium} Snort rule ID. sid <1-4294967295...> XAMPLE ALU(config-firewall-intrusion-snort)# rule enable classtype attempted-dos Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 649: Rule Modify

    Modification of rule to $EXTERNAL_NET is shown below: ALU(config-firewall-intrusion-snort)#rule modify 1292 content alert tcp $EXTERNAL_NET any -> $EXTERNAL_NET any (msg:"ATTACK-RESPONSES directory listing"; flow:from_server,established; content:"Volume Serial Number"; classtype:bad-unknown; sid:1292; rev:8;) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 650: Rule Prevention

    ARAMETER Parameter Description Name of the sensor. name XAMPLE ALU# show firewall intrusion sensor firewall intrusion sensor sensor1 snort intrusion sensor sensor4 snort intrusion sensor s1 snort exit Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 651: Show Firewall Intrusion Snort Archives

    ARAMETER None. XAMPLE ALU#show firewall intrusion snort archives Version no | Details Date of Download |Time of Downl- 2.3.0 Current initial Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 652: Show Firewall Intrusion Snort File List

    00 00 00 00 00 00 00 00 00 0 0 00 00 00 00 00 00 00 00 00|"; reference:arachnids,449; classtype:attempted-rec on; sid:467; rev:3;) --More-- Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 653: Show Firewall Intrusion Snort Rule

    $EXTERNAL_NET any -> $HOME_NET any (msg:"DOS Teardrop attack"; fragbits:M; id:242; reference:bugtraq,124; reference:cve,1999-0015; reference:nessu) alert udp any 19 <> any 7 (msg:"DOS UDP echo+chargen bomb"; reference:cve,1999-0103; reference:cve,1999-0635; classtype:attempted-dos; sid:271; rev:4;) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 654: Show Firewall Intrusion Snort Rule Disable

    Details of the snort rules of a specific priority {high|low|medium} disabled priority. Details of the snort rules specific disabled rule ID. XAMPLE ALU# show firewall intrusion snort rule disable sid Disable sid: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 655: Show Firewall Intrusion Snort Statistics

    ARAMETER Parameter Description Interface for which Snort statistics is interface-name being viewed. XAMPLE ALU#show firewall intrusion snort statistics Pkt Received Pkt Passed Pkt Dropped Pkt Queued Pkt Detected Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 656: Show Firewall Intrusion Snort Statistics Preprocessor

    The preprocessor that acts as generic http-inspect HTTP decoder. The preprocessor that normalizes RPC fragmented records. The preprocessor that is used for stream4 reassembly. XAMPLE ALU#show firewall intrusion snort statistics preprocessor http- inspect Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 657: Show Firewall Intrusion Snort Statistics Rule

    Snort rule statistics belonging to a class-type <name> specific class type. Snort rule statistics for a specific priority. priority {high|low|medium} XAMPLE ALU#show firewall intrusion snort statistics rule all Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 658: Show Firewall Intrusion Snort Update

    This command is entered in the Super User Mode or the Configuration Mode. This command is used to view firewall policy configuration details. ARAMETER Parameter Description Name of the firewall policy. name XAMPLE ALU#show firewall policy policy1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 659: Update

    The URL for HTTP or HTTPS should be provided in the following way: For e.g., ‘update instant https https://<username:password@<server-name/ip>/signature.tar.gz passive/rebuild’. It is preferable to upgrade the signatures from Alcatel-Lucent HTTPS server: ‘idsdl.esd.alcatel-lucent.com’. It will internally verify the signature versions and download the latest signatures.
  • Page 660 'Rebuild' command. Downloads the latest signature rebuild database. The signature database will come into effect immediately after download. XAMPLE ALU(config-firewall-intrusion-snort)# update instant https https://idsdl.esd.alcatel-lucent.com/signature.tar.gz rebuild Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 661: Generic Routing Encapsulation

    For a more detailed information on using and configuring GRE, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 662: Gre-Keep-Alive-Interval

    ARAMETERS Parameter Description Specifies the maximum number of GRE 1-100 keep alive messages to be sent. EFAULT ALUE The default keepalive max-tries is 3. XAMPLE ALU(config)# gre-keep-alive-max-tries 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 663: Interface Tunnel

    IP address and subnet mask to the tunnel interface. ARAMETERS Parameter Description IP address with subnet mask or prefix {<ip-address subnet- length. mask>|<ip-address/prefix- length>} EFAULT ALUE None. XAMPLE ALU(config-if Tunnel7)# ip address 20.20.20.20/24 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 664: Mode

    The default keepalive max-tries is 3. NO SHUTDOWN no shutdown This command is entered in the Interface Configuration Mode. This command is used to administratively bring up the tunnel interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 665: No Tunnel Destination

    IP address of the tunnel at the remote end. ARAMETERS Parameter Description Destination IP address of the tunnel. ip-address EFAULT ALUE None. XAMPLE ALU(config-if Tunnel7)# tunnel destination 10.1.0.5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 666: Tunnel Df-Bit

    IP address of the tunnel. ARAMETERS Parameter Description Source IP address of the tunnel. ip-address EFAULT ALUE None. XAMPLE ALU(config-if Tunnel7)# tunnel source 10.91.0.7 ALU(config-if Tunnel7)# tunnel source FastEthernet 0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 667: Tunnel Vrf

    Parameter Description Name of the VRF different from the VRF vrf-name associated with the tunnel interface. Default VRF. default EFAULT ALUE None. XAMPLE ALU(config-if Tunnel7)# tunnel vrf ALU-vrf1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 668 Left running head: Chapter name (automatic) Generic Routing Encapsulation Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 669: Part 7: Telephony Services

    To switch to the beta version, import color def’ns from beta-colors.fm Part 7 Telephony Services Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 670 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 671: Telephony Services

    For more detailed information about using and configuring Telephony Service on OmniAccess 5510- AA/AB USG, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 672: Clear Telephony-Active-Calls

    ESCRIPTION This command is entered in the Telephony Service Configuration Mode. This command removes all the registered users. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(telephony-service)# clear telephony-registered-users Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 673: No Telephony-Outbound-Proxy Address

    <1-3> This command is entered in the Telephony Service Configuration Mode. This command removes the specified dial plan rule/s, and reverts to the default user defined dial plan. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 674: Rovr-Callserver Address

    Similarly, calls from phones that configure primary call server as their server are forwarded to the lower priority call server if it is down. EFAULT ALUE None. XAMPLE ALU(telephony-service)# rovr-callserver address 100.0.0.10 priority 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 675: Rovr-Display-Message Interval

    ROVR module. EFAULT ALUE The default rovr-display-message interval is 60 seconds. XAMPLE ALU(telephony-service)# rovr-display-message interval 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 676: Rovr-Keep-Alive-Message

    The default message type is options. The default retry count is 1. The default retry after is 60 seconds. XAMPLE ALU(telephony-service)# rovr-keep-alive-message register retry- count 3 retry-after 30 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 677: Show Rovr-Keep-Alive-Message Details

    This command is entered in the Super User Mode or Configuration Mode. This command displays the duration OmniAccess 5510-AA/AB USG was either in survivability mode/stand-alone mode. ARAMETERS None. XAMPLE ALU(config)# show rovr-uptime 0:0:32 uptime is in hh:mm:ss format Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 678: Show Telephony Active-Call-Details

    Survivability and Stand-alone mode. ARAMETERS None. XAMPLE ALU(config)# show telephony active-call-details call details 0: ---------------- call duration 0:0:7 caller number callee number 3310 1 total. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 679: Show Telephony Config

    1 pattern (2{1}(7,77,777)6{1}4{1}0{1}7{1})user 3301 3.3.3.124 telephony-user-dialplan rule 2 pattern 2776407 user 2202 3.3.3.202 telephony-user-dialplan rule 3 pattern \d+ user 3303 3.3.3.124 telephony-debug-level 6 rovr-display-message interval 60 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 680: Show Telephony-Identity Details

    This also displays total number of registered users. ARAMETERS None. XAMPLE ALU(config)# show telephony-registered-users Registrations: =============================================================== User 3301@100.0.0.12 Contact <sip:3301@3.3.3.101> Agent PolycomSoundPointIP-SPIP_300-UA/2.1.3.0028 Expires 2008-11-27 12:56:39 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 681 2008-11-27 12:56:44 User 3310@100.0.0.10 Contact <sip:3310@3.3.3.101> Agent PolycomSoundPointIP-SPIP_300-UA/2.1.3.0028 Expires 2008-11-27 12:54:46 User 3303@100.0.0.10 Contact <sip:3303@3.3.3.236> Agent PolycomSoundPointIP-SPIP_500-UA/2.1.3.0028 Expires 2008-11-27 12:54:52 Total Registered users: 5 =============================================================== 2008-11-27 12:52:55 =============================================================== Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 682: Show Telephony Status

    Status : False Call Server : 100.0.0.11 Priority : 2 Status : False Call Server : 100.0.0.12 Priority : 3 Status : False Survivability Mode : Enable Status : Active Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 683: Telephony-Call-Forward

    IP address to which the call is destined. The ip-address IP address can be gateway, phone or call server IP address. EFAULT ALUE None. XAMPLE ALU(telephony-service)# telephony-call-forward busy 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 684: Telephony-Debug-Level

    Higher the number, detailed debugging information is displayed. EFAULT ALUE The default debug level is 0. XAMPLE ALU(telephony-service)# telephony-debug-level 7 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 685: Telephony-Default-Dialplan

    2. In the following example, only 6 digits call will be successful: ALU(telephony-service)# telephony-default-dialplan dest-num- pattern [0-9]{6} 3. In the following example, calls to phones having 3 characters followed by 2 digits will be successful: Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 686 For example, if the dialed number is 5567, it will be matched with the configured number pattern and the dialed number will be prefixed and suffixed with 2 and 3 respectively and will be forwarded as 255673. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 687: Telephony Disable

    “License not Available for telephony feature” is displayed. For more information on how to install the license, refer to “License Manager” chapter. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(telephony-service)# telephony enable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 688: Telephony-Identity Address

    The VRF being configured should be the one, which is configured on the WAN link. If the VRF is not specified, then the Default VRF is applied. EFAULT ALUE None. XAMPLE ALU(telephony-service)# telephony-identity address 3.3.3.50 name 2000 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 689: Telephony-Maximum-Active-Calls

    ARAMETERS Parameter Description Specify number of active calls per second in 0-10 the range 0-10. EFAULT ALUE None. XAMPLE ALU(telephony-service)# telephony-maximum-calls-per-second 5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 690: Telephony-Maximum-Reg-Users

    ARAMETERS Parameter Description Specify the maximum number of users that 1-250 can be registered in the range 1-2000. EFAULT ALUE None. XAMPLE ALU(telephony-service)# telephony-maximum-reg-users 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 691: Telephony-Outbound-Proxy Address

    Also, the IP address of the outbound proxy server should not be the same as any of the ROVR call server IP address. ARAMETERS Parameter Description IP address of the outbound proxy. ip-address EFAULT ALUE None. XAMPLE ALU(telephony-service)# telephony-outbound-proxy address 1.1.1.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 692: Telephony Service

    ESCRIPTION This command is entered in the Configuration Mode. This command enters the Telephony Service Configuration Mode. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config)# telephony service ALU(telephony-service)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 693: Telephony-User-Dialplan Rule

    <integer> it matches the configured number pattern. The dialed number is suffixed with the specified integer if suffix <integer> it matches the configured number pattern. EFAULT ALUE None. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 694 For example, if the dialed number is 66, it will be matched with the configured number pattern and the dialed number will be prefixed and suffixed with 2 and 5 respectively and will be forwarded as 2665 to 2.2.2.4. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 695: Part 8: Quality Of Service

    To switch to the beta version, import color def’ns from beta-colors.fm Part 8 Quality of Service Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 696 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 697: Quality Of Service

    For more detailed information about using and configuring the QoS, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 698: Auto Qos Diff-Serv

    This policy is to be attached to an interface using the ‘service policy command’. ARAMETERS Parameter Description Name of the policy map. policy-map name EFAULT ALUE None. XAMPLE ALU(config)# auto qos template voip p1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 699: Auto Qos Voip

    You cannot mix the absolute bandwidth command with percentage bandwidth command across sibling classes. ARAMETERS Parameter Description The absolute bandwidth (bps) value. 101-70000000 The bandwidth in percentage. 1-100 EFAULT ALUE None. XAMPLE ALU(config-pmap-P1-C1)# bandwidth 101 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 700: Class

    Name of the class map. class-map name Default traffic class. class-default EFAULT ALUE ‘class-default’ is the default traffic class. XAMPLE ALU(config-qos-P1)# class C1 ALU(config-qos-P1-C1)# ALU(config-qos-P1-C1)# class class-default ALU(config-qos-P1-class-default)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 701: Class-Map

    The range for the rule is 1-65535. This rule number signifies the priority of a rule. ALU(config-qos-C1)# match all m1 m3 ALU(config-qos-C1)# match any m2 m4 m5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 702: Clear Queuing Statistics

    ALUE None. XAMPLE ALU(config-qos-P1)# description P1 is the name of the policy- map. ALU(config-qos-P1)# show policy-map P1 policy-map P1 description P1 is the name of the Policy Map Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 703: Fair-Queue

    This command is entered in the Class Mode. This command is used to enable fair queue on the Default Class. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config-qos-P1-C1)# class class-default ALU(config-qos-P1-class-default)# fair-queue Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 704: Network-Control

    This command is entered in the Interface Configuration Mode. This command disables Auto QoS VoIP on an interface. NO BANDWIDTH no bandwidth This command is entered in the Class Mode. This command removes the bandwidth configuration. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 705: No Class

    This command is entered in the Configuration Mode. This removes the configured policy-map. Note: You cannot remove a policy map if it is attached to an interface either in ingress or egress direction. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 706: No Priority

    NO SERVICE POLICY no service-policy {in|out} <policy-map name> This command is entered in the Interface Configuration Mode. This command detaches the policy-map from the interface it has been bound. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 707: No Service-Policy

    This command is entered in the Policy-map Mode. This command removes the bandwidth configured for the tunnel interface. NO QUEUE LIMIT no queue-limit This command is entered in the Class Mode. This command deletes the configured queue-limit. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 708: Police

    The default value for Exceed Action is Drop. The default value for Violate Action is Drop. XAMPLE ALU(config-qos-P1-C1)# police committed-rate 500000 commit- action transmit committed-burst 15625 exceed-action drop Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 709: Policy-Map

    This command is entered in the Class Mode. Configures the traffic class as a priority class. ARAMETERS Parameter Description The second highest priority class. priority EFAULT ALUE None. XAMPLE ALU(config-qos-P1-C1)# priority Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 710: Priority Bandwidth

    You cannot mix the absolute bandwidth command with percentage bandwidth command across sibling classes. ARAMETERS Parameter Description The absolute bandwidth (bps) value. 101-70000000 The bandwidth in percentage. 1-100 EFAULT ALUE None. XAMPLE ALU(config-pmap-P1-C1)# priority bandwidth 101 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 711: Qos Credits Debug

    This command is entered in the Tunnel Interface Mode. This command is used to enable pre-classification on the tunnel interface. ARAMETERS None. EFAULT ALUE None. XAMPLE ALU(config)# interface tunnel 1 ALU(config-tunnel1)# qos-preclassify Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 712: Random-Detect

    WRED values but does not enable the feature. To enable this, use the ‘random-detect ip-precedence’ command. Note: The queue limit of the traffic class should be greater than the max thresh value. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 713 EFAULT ALUES FOR ANDOM DETECT PRECEDENCE ip-precedence Min-Threshold Max-Threshold Drop-Probability IP-DSCP EFAULT ALUES FOR ANDOM DETECT ip-dscp Min-Threshold Max-Threshold Drop-Probability Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 714 Left running head: Chapter name (automatic) Quality of Service ip-dscp Min-Threshold Max-Threshold Drop-Probability Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 715 Except on the first page, right running head: Heading1 or Heading1NewPage text (automatic) random-detect ip-dscp Min-Threshold Max-Threshold Drop-Probability Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 716: Service-Policy

    Egress direction. Name of the policy map. policy-map name EFAULT ALUE None. XAMPLE ALU(config)# interface FastEthernet 0 ALU(config-if FastEthernet0)# service-policy in P1 Attached QoS policy P1 to the interface. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 717: Service-Policy

    ALU(conifg)# policy-map p2 ALU(config-qos-p1)# class c2 ALU(config-qos-p1-c2)# Now, policy p2 can be included in the policy p1 using the ‘service-policy command. ALU(conifg)# policy-map p1 ALU(config-qos-p1)# class c1 ALU(config-qos-p1-c1)# service-policy p2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 718: Set

    IP-precedence mnemonics. See table below. precedence-mnemonics DSCP value in the range 0 - 63. 0-15 ToS mnemonics. See table below. tos-mnemonics DSCP M NEMONICS DSCP Mnemonics Values default af11 af12 af13 af21 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 719 TOS M NEMONICS TOS Mnemonics Values min-delay max-tput max-reli flash normal EFAULT ALUE None. XAMPLE ALU(config-qos-P1-C1)# set ip dscp af11 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 720: Shape

    Parameter Description Shape Committed Rate 8000-10000000 Shape Committed Burst 40-200000 Shape Peak Rate 8000-10000000 Shape Excess Burst 40-200000 EFAULT ALUE None. XAMPLE ALU(config-qos-P1-C1)# shape committed-rate 500000 committed-burst 7812 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 721: Show Auto Qos

    20 queue-limit 350 random detect ip-dscp af31 min-threshold 200 max-threshold 300 random detect ip-dscp af32 min-threshold 150 max-threshold 300 random detect ip-dscp af33 min-threshold 100 max-threshold 300 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 722 70 set ip-dscp ef class-default fair-queue set ip-dscp default Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 723: Show Class-Map

    Description Name of the class-map to be viewed. name XAMPLE ALU# show class-map cmap1 class-map c1 match-any 1 match any m1 m2 2 match any m2 m4 m5 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 724: Show Policy-Map

    EFAULT ALUE None. XAMPLE ALU# show policy-map P1 policy-map p1 interface atm0 EGRESS 10 class cm_ef random-detect ip-dscp 20 class cm_af11 65535 class class-default Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 725: Show Random-Detect-Defaults

    ALU(config)# show random-detect-defaults ip-dscp ip-dscp Min-Thresh Max-Thresh Drop-Probability af11 af12 af13 af21 af22 af23 af31 af32 af33 af41 af42 af43 ALU(config)# show random-detect-defaults ip-precedence ip-precedence Min-Thresh Max-Thresh Drop-Probability Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 726: Show Service-Policy

    1/10 1/10 Class cm_af11 match-any match any m1_af11 0 packets total, 0 bytes total, 0 packets transmitted, 0 bytes transmitted, 0 packets dropped, 0 bytes dropped, Class L2-network-control Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 727: Show Qos Config

    1000000 commit-action transmit committed- burst 1600 exceed-action drop excess-burst 2600 violate-action drop interface FasttEthernet0 service-policy in p1 interface atm0 service-policy out p1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 728: Show Qos Running-Config

    9600 commit-action drop committed-burst 1500 exceed-action drop excess-burst 2000 violate-action transmit queue-limit 155 random-detect ip-dscp 0 min-thresh 50 max-thresh 150 interface FastEthernet0 service-policy in p1 interface atm0 service-policy out p1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 729: Show Queuing Interface

    90000 committed-burst 6000 police committed-rate 9600 commit-action drop committed-burst 1500 exceed-a queue-limit 155 random-detect ip-dscp 0 min-thresh 50 max-thresh 150 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 730: Show Queuing Statistics

    Packets dropped 0 Packets dequeued 0 Bytes dequeued 0 Queue length (Packets) 0 class c14 Packets dropped 0 Packets dequeued 0 Bytes dequeued 0 Queue length (Packets) 0 class c15 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 731: Tunnel

    QoS over a tunnel interface. ARAMETERS Parameter Description Name of the tunnel interface with in the 0-14487 specified range EFAULT ALUE None. XAMPLE ALU(config-qos-P1)# tunnel Tunnel 1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 732: Tunnel Bandwidth

    ARAMETERS Parameter Description The range of queue-limit. 10-1500 EFAULT ALUE By default, a traffic class will have a queue limit of 150. XAMPLE ALU(config-qos-P1-C1)# queue-limit 155 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 733: Part 9 Tcp/Ip Services

    To switch to the beta version, import color def’ns from beta-colors.fm Part 9 TCP/IP Services Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 734 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 735: Dhcp (Dynamic Host Configuration Protocol)

    In this chapter, all the commands are described in alphabetical order. For more detailed information about using and configuring the DHCP Server, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 736: Exclude Ip

    IP address from the pool. The excluded address should exist within the configured range. ARAMETERS Parameter Description IP address with in the network range to ip-address be excluded. EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# exclude ip 1.2.3.65 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 737: Host

    ARAMETERS Parameter Description IP address within any of the configured ip-address network pools. Hardware address of the host. mac-address EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p2)# host 1.2.3.66 1122.aabb.55ff Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 738: Ip Dhcp Option Bootfile-Name

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option bootfile-name boot_image Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 739: Ip Dhcp Option Dns-Server

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option dns-server 1.2.2.2 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 740: Ip Dhcp Option Domain-Name

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option domain-name alu Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 741: Ip Dhcp Option Lease-Time

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option lease-time 1000250 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 742: Ip Dhcp Option Log Server

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option log-server 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 743: Ip Dhcp Option Ntp Server

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option ntp-server 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 744: Ip Dhcp Option Routers

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option routers 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 745: Ip Dhcp Option Subnet-Mask

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option subnet-mask 255.255.255.0 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 746: Ip Dhcp Option Tftp-Server

    VRF. If the VRF is not specified, the option is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp option tftp-server 3.2.2.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 747: Ip Dhcp Option Time-Offset

    ARAMETERS Parameter Description Name of the Boot file for a host. file-name EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# option bootfile-name boot_image Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 748: Option Dns-Server

    ARAMETERS Parameter Description Domain name to be used by the clients. name EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# option domain-name alu Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 749: Option Lease-Time

    MIT-LCS UDP log server IP address to be used by the clients. ARAMETERS Parameter Description IP address of the log server. ip-address EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# option log-server 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 750: Option Ntp Server

    DHCP is configured. ARAMETERS Parameter Description IP address of the router. ip-address EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# option routers 1.1.1.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 751: Option Subnet-Mask

    IP address/domain name of the TFTP server. ARAMETERS Parameter Description IP address/domain name of the TFTP string server. EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# option tftp-server 3.2.2.1 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 752: Option Time-Offset

    This command is entered in the DHCP Pool Configuration Mode. This command is used to determine the time variation from GMT (in seconds). ARAMETERS Parameter Description Time variation in seconds. 1-315360000 EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# option time-offset 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 753: Ip Dhcp Pool

    VRF. If the VRF is not specified, the pool is configured for the Default VRF. EFAULT ALUE None. XAMPLE ALU(config)# ip dhcp pool p1 vrf alu-vrf ALU(config-dhcp-pool-p1)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 754: Network

    IP address. NO IP DHCP OPTION DOMAIN NAME no ip dhcp option domain-name <name> [vrf <vrf-name>] This command is entered in the Configuration Mode. Deletes the configured domain name. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 755: No Ip Dhcp Option Lease-Time

    NO OPTION BOOTFILE NAME no option bootfile-name <file-name> This command is entered in the DHCP Pool Configuration Mode. Deletes the configured the boot file for a host. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 756: No Option Dns-Server

    NO OPTION TFTP SERVER no option tftp-server <string> This command is entered in the DHCP Pool Configuration Mode. Deletes the configured IP address/domain name of the TFTP server. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 757: No Option Time-Offset

    This command is entered in the DHCP Pool Configuration Mode. Deletes a configured network pool. NO RANGE no range {<lower ip-address> <higher ip-address>|<automatic>} This command is entered in the DHCP Pool Configuration Mode. Deletes a configured network range. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 758: Range

    <lower ip-address> <higher ip- network range. address> Specify entire network addresses to be automatic available to the client. EFAULT ALUE None. XAMPLE ALU(config-dhcp-pool-p1)# range 1.2.3.50 1.2.3.100 ALU(config-dhcp-pool-p1)# range automatic Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 759: Service Dhcp Enable

    DHCP service on OmniAccess 5510-AA/AB USG. ARAMETERS Parameter Description Disable the DHCP service. disable EFAULT ALUE By default, DHCP service is disabled. XAMPLE ALU(config)# service dhcp disable Service DHCP disabled successfully Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 760: Show Ip Dhcp Bindings

    MANUAL (config)# show ip dhcp bindings dynamic IP Address Hardware Address Lease Expiration Type Pool ========== ================= ======================== ======= ===== 10.91.2.87 00:0f:fe:3a:63:da Wed Jan 17 23:38:11 2007 DYNAMIC Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 761: Show Ip Dhcp Options

    Default VRF. XAMPLE ALU(config)# show ip dhcp options Routers : 1.1.1.1 Domain Name Server : 1.2.2.2 Log Server : 1.1.1.1 NTP Server : 1.1.1.1 ALU(config)# Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 762: Show Ip Dhcp Pools

    Number of leases Pool Range 1.2.3.50 / 1.2.3.100 Boot-File Name boot_image ALU(config)# show ip dhcp pools p2 Pool Name Pool Host Address 1.2.3.66 Pool Host Mac Address 11:22:aa:bb:55:ff Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 763: Show Ip Dhcp Server Statistics

    This command is entered in the Super User Mode or Configuration Mode. This command shows the DHCP server statistics. ARAMETERS None. XAMPLE ALU(config)# show ip dhcp server statistics Message Received DHCPDISCOVER DHCPREQUEST DHCPDECLINE DHCPRELEASE DHCPINFORM Message Sent DHCPOFFER DHCPACK DHCPNAK Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 764 Left running head: Chapter name (automatic) DHCP (Dynamic Host Configuration Protocol) Server Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 765: Tftp (Trivial File Transfer Protocol) Server

    Server, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Note: Currently, we do not support uploading of files to the TFTP server running on OmniAccess 5510-AA/AB USG. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 766: No Tftp-Server

    TFTP server. ARAMETERS None. XAMPLE ALU(config)# show tftp files TFTP-File Alias ---------------------------------------------------- N.A. /tftpd N.A. /voip/www/voip/update.php N.A. /voip/www/voip/update.php voiptest Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 767: Tftp-Server Disable

    TFTP service on OmniAccess 5510-AA/AB USG. ARAMETERS Parameter Description Enable the TFTP service. enable EFAULT ALUE By default, TFTP service is disabled. XAMPLE ALU(config)# tftp-server enable Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 768: Tftp-Server

    TFTP server. User friendly name given to the file file-alias allowed for download. EFAULT ALUE None. XAMPLE ALU(config)# tftp-server voip/www/voip/update.php alias voiptest Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 769: Dhcp (Dynamic Host Configuration Protocol) Relay

    For more detailed information about using and configuring the DHCP Relay, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 770: Ip Dhcp Relay

    ARAMETERS Parameter Description The interface through which the DHCP relay interface-name requests have to be rebroadcasted. EFAULT ALUE None. XAMPLE ALU(config-if FastEthernet0)# ip dhcp relay interface vlan 10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 771: No Ip Dhcp Relay

    DHCP Relay configuration of all/an interface. ARAMETERS Parameter Description Shows the DHCP Relay configuration on interface-name the specified interface. XAMPLE ALU(config)# show ip dhcp relay Interface Relay destination FastEthernet0 192.168.1.1 FastEthernet0 vlan10 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 772 Left running head: Chapter name (automatic) DHCP (Dynamic Host Configuration Protocol) Relay Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 773: Dns (Domain Name Service)

    For more detailed information about using and configuring the DNS Client, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 774: Clear Host

    By default, the default domain-name is used. The domain names added in the list are probed in order. ARAMETERS Parameter Description Domain name to be added to the domain name list. EFAULT ALUE None. XAMPLE ALU(config)# ip domain-list test Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 775: Ip Domain-Lookup

    This command is entered in the Configuration Mode. This command is used to configure the default domain name, which is used in domain lookup. ARAMETERS Parameter Description Default domain name. name EFAULT ALUE None. XAMPLE ALU(config)# ip domain-name abc.com Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 776: Ip Host

    30-31556952 seconds) for which the dynamic host entries will be stored in DNS client cache. EFAULT ALUE The default host-max-age is 300 seconds. XAMPLE ALU(config)# ip host-max-age 100 Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 777: Ip Name-Server

    Set the name server as the secondary secondary server. Set the name server as the tertiary server. tertiary EFAULT ALUE None. XAMPLE ALU(config)# ip name-server 1.1.1.1 1.1.1.2 1.1.1.3 ALU(config)# ip name-server 1.1.1.1 primary Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 778: No Ip Domain-List

    This command is entered in the Configuration Mode. This command is used to remove a name server. If the ordinal is specified, the removal is only successful if the given address is in that ordinal location. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta...
  • Page 779: Nslookup

    Name/address lookup uses domain service Name server(s): 1.1.1.1, 1.1.1.2, 1.1.1.3 Dynamic host maximum age (seconds): 300 Address Type Name --------------- ------- ----- ------------ 64.233.187.99 static www.google.com 216.109.112.135 dynamic yahoo.com Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 780 Left running head: Chapter name (automatic) DNS (Domain Name Service) Client Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 781: Part 10 License Manager

    To switch to the beta version, import color def’ns from beta-colors.fm Part 10 License Manager Pagination: Numeric & continuous Optional footer: Alcatel-Lucent with Manual title (to set, preceding redefine ManualTitle OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide section of...
  • Page 782 Left running head: Chapter name (automatic) Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 783: License Manager

    In this chapter, all commands are described in alphabetical order. For more detailed information these command, refer to the OmniAccess 5510 Unified Services Gateway CLI Configuration Guide. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 784: Dir Licenses

    ‘list licenses’ command ARAMETERS None. XAMPLE ALU(config)# dir licenses Permission Size Date modified Name --------- ---- ------------- ------ -rw- 1795 Jun 8 17:24 K1582151_DATA.txt Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 785: License Backup

    Backup the license file to a remote tftp: location using TFTP. Backup the license file to the user area. user: XAMPLE ALU(config)# license backup K1582151_VOICE.txt user: Backup license name: K1582151_VOICE.txt License backed up successfully. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 786: License Install

    TFTP from a remote location. Install the license file from the user area. user: Download the license file to be installed through vrf-name an inteface associated with the specified VRF. Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 787 * Issued on : Aug 13 08:13:01 2009 * Chassis ID: K1582151 * Serial num: 4 * Details : Session Border Controller ROR * Attributes: Name Value -------- ------- VALIDITY UNLIMITED Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 788: License Remove

    ARAMETERS None. XAMPLE ALU(config)# list licenses Permission Size Date modified Name --------- ---- ------------- ------ -rw- 1795 Jun 8 17:24 K1582151_DATA.txt Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 789: Show Licenses Feature-List

    ARAMETERS None. XAMPLE ALU(config)# show licenses feature-list Feature Licensed Valid ======= ======== ===== SBC-ROR IPSEC IDS-UPDATE Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 790: Show Licenses

    * Issued on : Aug 13 08:13:01 2009 * Chassis ID: K1582151 * Serial num: 1 * Details : Intrusion Detection System * Attributes: Name Value -------- ------- VALIDITY UNLIMITED Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 791 * Issued on : Aug 13 08:13:01 2009 * Chassis ID: K1582151 * Serial num: 4 * Details : Session Border Controller ROR * Attributes: Name Value -------- ------- VALIDITY UNLIMITED Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...
  • Page 792 Left running head: Chapter name (automatic) License Manager Alcatel-Lucent OmniAccess 5510 Unified Services Gateway CLI Command Reference Guide Beta Beta...