User guide
Firewall Firewall command reference
iMG/RG Software Reference Manual (IPNetwork Functions)
4-108
4.3.2.0.1 FIREWALL ENABLE|DISABLE
Syntax firewall {enable | disable}
Description This command enables/disables the entire Firewall module except for the IDS portion of
the module (see the command FIREWALL ENABLE|DISABLE IDS).
When the Firewall is enabled, all IP traffic on existing security interfaces that are NOT
featured in a Firewall policy is blocked. For details on setting default policy security levels
on security interfaces, see the FIREWALL SET SECURITYLEVEL command.
If you disable the Firewall during a session, any configuration changes made when the
Firewall was enabled remain in the Firewall, so that you can re-enable them later in the
session. If you need to reboot your system but want to save the Firewall configuration
between sessions, use the SYSTEM CONFIG SAVE command.
Options The following table gives the range of values for each option that can be specified with
this command and a Default Value (if applicable).
Example --> firewall enable
FIREWALL SET IDS MAXICMP XXXXX X X X X
FIREWALL SET IDS MaxPING XXXXX X X X X
FIREWALL SET IDS MAXTCPOPENHANDSHAKE XXXXX X X X X
FIREWALL SET IDS SCANATTACKBLOCK XXXXX X X X X
FIREWALL SET IDS FLOODPERIOD XXXXX X X X X
FIREWALL SET IDS FLOODTHRESHOLD XXXXX X X X X
FIREWALL SET IDS PORTFLOODTHRESHOLD XXXXX X X X X
FIREWALL SET IDS SCANPERIOD XXXXX X X X X
FIREWALL SET IDS SCANTHRESHOLD XXXXX X X X X
FIREWALL SHOW IDS XXXXX X X X X
Option Description Default Value
enable
Enables the
Firewall module.
Disable
disable
Disables the
Firewall module.
TABLE 4-3 Firewall commands (Continued)and Product Type
Commands
Fiber
A
Fiber
B
Fiber
C
Fiber
D
Fiber
E Modular
ADSL
A
ADSL
B
ADSL
C