. ! * ( H i r s c h m a n n E a g l e ) > RM CLI EAGLE 20 Technical Support Release 4.3 09/08...
Page 2
This publication has been created by Hirschmann Automation and Control GmbH according to the best of our knowledge. Hirschmann reserves the right to change the con- tents of this manual without prior notice. Hirschmann can give no guarantee in respect of the correctness or accuracy of the details in this publication.
Executing commands 3.2.1 Syntax analysis 3.2.2 Command tree 3.2.3 Structure of a command Properties of the CLI 3.3.1 Input prompt 3.3.2 Key combinations 3.3.3 Data entry elements 3.3.4 Line length Example Index Further support RM CLI EAGLE 20 Release 4.3 09/08...
The “Configuration” user manual contains all the information you need to start operating the Industrial ETHERNET Firewall EAGLE 20. It takes you step by step from the first startup operation through to the basic settings for operation in your environment.
Page 6
About this Manual RM CLI EAGLE 20 Release 4.3 09/08...
The designations used in this manual have the following meanings: List Work step Subheading Link Indicates a cross-reference with a stored link Note: A note emphasizes an important fact or draws your attention to a dependency. ASCII representation in user interface Courier RM CLI EAGLE 20 Release 4.3 09/08...
1.1 Industrial ETHERNET Firewall 1.1 Industrial ETHERNET Firewall 1.1.1 Application areas The EAGLE 20 industrial firewall/VPN system ensures the authentication, security and confidentiality of communication within production networks, but also beyond company boundaries. The EAGLE 20 supports the following network modes:...
Page 10
“Basic Configuration” user manual of the EAGLE PPPoE Mode In PPPoE Mode, the EAGLE 20 works like in the router mode, with the difference that the PPPoE protocol is used at the external port. This enables Internet connections via a DSL modem, for example.
The device has three user interfaces, which you can access via different interfaces: System monitor via the V.24 interface (out-of-band) Command Line Interface (CLI) via the V.24 connection (out-of-band) or via SSH (in-band) Web-based interface via Ethernet (in-band) RM CLI EAGLE 20 Release 4.3 09/08...
The “Command Line Interface” reference manual gives you step-by-step in- formation on using the Command Line Interface (CLI) and its commands. The commands in the Command Line Interface of the EAGLE 20 Firewall can be divided into the following areas:...
Access to CLI 2.1 Preparing the connection 2.1 Preparing the connection Information for assembling and starting up your EAGLE 20 Industrial ETHERNET Firewall can be found in the “Installation” user manual. Information for configuring your EAGLE 20 Industrial ETHERNET Firewall can be found in the “Configuration”...
In the Host Name (or IP address) input field you enter the IP address of your device. The IP address (a.b.c.d) consists of four decimal numbers with values from 0 to 255. The four decimal numbers are separated by a point. RM CLI EAGLE 20 Release 4.3 09/08...
Page 16
If the fingerprint matches that of the device key, click “Yes”. You can read the fingerprints of the device key with the CLI command “show login” or in the Web interface, in the “SSH access” dialog. RM CLI EAGLE 20 Release 4.3 09/08...
Page 17
You can change the user name and the password later in the Command Line Interface. Please note that these entries are case-sensitive. The start screen appears. Note: This device is a security-relevant product. For your own security, change the password during the first startup procedure. RM CLI EAGLE 20 Release 4.3 09/08...
Page 18
Access to CLI 2.2 CLI via SSH (Secure Shell) Copyright (c) 2007-2008 Hirschmann Automation and Control GmbH All rights reserved EAGLE Release SDV-04.3.00 (Build date 2008-08-26 11:46) System Name: EAGLE-000000 Netw. Mode : transparent Mgmt-IP a.b.c.d Base-MAC 00:80:63:62:B0:FF System Time: WED JAN 02 01:26:13 2008 NOTE: Enter '?' for Command Help.
VT100, and press any key. After the connection has been made successfully, a window for entering the user name appears on the screen. Copyright (c) 2007-2008 Hirschmann Automation and Control GmbH All rights reserved Eagle NG Release SDV-04.3.00-A07...
(setting on terminal: 9600 baud) to the V.24 interface. Press any key on your terminal keyboard a number of times until the login screen indicates the CLI mode. RM CLI EAGLE 20 Release 4.3 09/08...
In the CLI, the commands are grouped in the related modes, according to the type of the command. Every command mode supports specific Hirschmann software commands. The commands available to you as a user at a specific time depend on the mode in which you are currently working.
Page 23
When you login to CLI, you first enter the User Exec mode. The User Exec mode contains a limited range of commands. Command prompt: (Hirschmann Eagle) > Privileged Exec mode To access the entire range of commands, you enter the Privileged Exec mode.
Page 24
This mode allows you to perform modifications to the current configura- tion. In this mode, general setup commands are grouped together. Command prompt: (Hirschmann Eagle) (config)# The following table shows the command modes, the command prompts (in- put request characters) visible in the corresponding mode, and the option with which you quit this mode.
Page 25
Activate or delete configuration profiles. reboot Reset the device (cold start). reload Reset the device (warm start). save Save configuration. Set device parameters. show Display device options and settings. Figure 9: Commands in the Privileged Exec mode RM CLI EAGLE 20 Release 4.3 09/08...
Page 26
Manage Users and User Accounts. Configure VPN settings. Figure 10: Commands in the Global Configuration mode Note: You will find information on the line feed of the help texts below (see on page 35 „Line length“). RM CLI EAGLE 20 Release 4.3 09/08...
The user wants to execute the show system info command, but enters this command with a misspelling and presses the <Enter> key. The CLI then outputs an error message: !(Hirschmann Eagle) >show system ino Error[1]: Invalid command 'ino' 3.2.2 Command tree The commands in CLI are organized into a tree structure.
Parameters can be required values, optional values, selections, or a com- bination of these things. You recognize this from the way they are repre- sented, as follows: <parameter> Pointed brackets indicate a required parameter. RM CLI EAGLE 20 Release 4.3 09/08...
Page 29
Here it is important not to have duplicate addresses in one network area. The MAC addresses are assigned by the hardware manufacturer. They are unique worldwide. The following table shows the representation and the range of the ad- dress types: RM CLI EAGLE 20 Release 4.3 09/08...
Page 30
The command does not re- quire any other parameters, and can be executed with <Enter>. Example 2: signal-contact monitor aca-removal Command for displaying the removal of the AutoConfiguration Adapter. !(Hirschmann Eagle) (config)#signal-contact monitor aca-removal en- able Enable the option. disable (default) Disable the option.
An asterisk “*” in the first or second position of the input prompt shows you that the settings in the volatile memory and the settings in the non-volatile memory are different. !*(Hirschmann Eagle)> *(Hirschmann Eagle)> RM CLI EAGLE 20 Release 4.3 09/08...
Disable serial flow CTRL + Z Return to root command prompt Tab, <SPACE> Command line completion Exit Go to next lower command prompt List choices Table 4: Key combinations in the Command Line Interface RM CLI EAGLE 20 Release 4.3 09/08...
Page 33
..return to root command prompt Tab, <SPACE> command-line completion Exit ..go to next lower command prompt ..list choices !*(Hirschmann Eagle) # Figure 11: Listing the key combinations with the Help command RM CLI EAGLE 20 Release 4.3 09/08...
Possible commands/parameters You can obtain a list of the commands or the possible parameters by en- tering “help” or “?”, for example by entering (Hirschmann Eagle) >show ?. When you enter the command displayed, you get a list of the parameters available for the command “show”.
SNMP version 2......enabled SNMP port number......161 Inactivity timeout Web (minutes)..0 Inactivity timeout serial (minutes)..0 Inactivity timeout SSH (minutes)..120 Login prompt......"Hirschmann Eagle" Figure 12: “Show login” command with a line length of 80 characters RM CLI EAGLE 20 Release 4.3 09/08...
Page 36
SNMP version 2......enabled SNMP port number......161 Inactivity timeout Web (minutes)..0 Inactivity timeout serial (minutes)..0 Inactivity timeout SSH (minutes)..120 Login prompt......"Hirschmann Eagle" Figure 13: “Show login” command with a line length of 132 characters RM CLI EAGLE 20 Release 4.3 09/08...
34 „Data entry elements“). Execute the command with <En- ter>. The command prompt changes from (Hirschmann Eagle) > to (Hirschmann Eagle) #, thus informing you that you are now in the Priv- ileged Exec mode. !*(Hirschmann Eagle) >enable !*(Hirschmann Eagle) # Enter a question mark “?”...
Page 38
“login timeout” . After “login timeout” enter a question mark to display the additional branches of the command. !(Hirschmann Eagle) #login timeout ? serial Set login timeout for serial line connections. Set login timeout for SSH connections.
Page 39
Example 3.3 Properties of the CLI !(Hirschmann Eagle) #login timeout ssh ? <1..120> Enter a number in the given range. After “login timeout ssh” enter the value desired, in this case 120, to set the timeout to 120 minutes. !(Hirschmann Eagle) #login timeout ssh 120 Execute the command by pressing the <Enter>...
Page 40
Access per Web (HTTPS)....enabled Web Access port number (HTTPS)..443 SNMP version 1......enabled SNMP version 2......enabled SNMP port number......161 Inactivity timeout Web (minutes)..0 Inactivity timeout serial (minutes)..0 Inactivity timeout SSH (minutes)..120 Login prompt......"Hirschmann Eagle" !(Hirschmann Eagle) # RM CLI EAGLE 20 Release 4.3 09/08...
Further support B Further support Technical questions and training courses In the event of technical queries, please talk to the Hirschmann contract partner responsible for looking after your account or directly to the Hirschmann office. You can find the addresses of our contract partners on the Internet: www.hirschmann-ac.com.
Need help?
Do you have a question about the EAGLE 20 and is the answer not in the manual?
Questions and answers