
ZyXEL Confidential
340ajk4c0
20/35
<yes|no>
retrieve firewall Retrieve current saved firewall settings
save firewall Save the current firewall settings
display firewall Displays all the firewall settings
set <set#> Display current entries of a set configuration;
including timeout values, name, default-permit,
and number of rules in the set.
set <set#> rule <rule#> Display current entries of a rule in a set.
attack Display all the attack alert settings in PNC
e-mail Display all the e-mail settings in PNC
? Display all the available sub commands
e-mail mail-server
<mail server IP>
Edit the mail server IP to send the alert
return-addr
<e-mail address>
Edit the mail address for returning an email alert
e-mail-to <e-mail
address>
Edit the mail address to send the alert
policy <full |
hourly |daily |
weekly>
Edit email schedule when log is full or per hour,
day, week.
day <sunday |
monday | tuesday
| wednesday |
thursday | friday |
saturday>
Edit the day to send the log when the email policy
is set to Weekly
hour <0~23> Edit the hour to send the log when the email
policy is set to daily or weekly
minute <0~59> Edit the minute to send to log when the email
policy is set to daily or weekly
Subject <mail
subject>
Edit the email subject
attack send-alert
<yes|no>
Activate or deactivate the firewall DoS attacks
notification emails
block <yes|no> Yes: Block the traffic when exceeds the
tcp-max-incomplete threshold
No: Delete the oldest half-open session when
exceeds the tcp-max-incomplete threshold
block-minute
<0~255>
Only valid when sets 'Block' to yes. The unit is
minute
minute-high
<0~255>
The threshold to start to delete the old half-opened
sessions to minute-low
minute-low
<0~255>
The threshold to stop deleting the old half-opened
session
max-incomplete-
high <0~255>
The threshold to start to delete the old half-opened
sessions to max-incomplete-low
max-incomplete-
low <0~255>
The threshold to stop deleting the half-opened
session
tcp-max-incompl
ete <0~255>
The threshold to start executing the block field
set <set#> name <desired
name>
Edit the name for a set
default-permit
<forward|block>
Edit whether a packet is dropped or allowed when
it does not match the default set
icmp-timeout
<seconds>
Edit the timeout for an idle ICMP session before it
is terminated
Kommentare zu diesen Handbüchern