User guide

Firewall command reference Firewall
4-109
iMG/RG Software Reference Manual (IPNetwork Functions)
4.3.2.0.2 FIREWALL ENABLE|DISABLE IDS
Syntax firewall {enable | disable}
Description This command explicitly enables/disables IDS (Intrusion Detection Service). You must
enable IDS if you want to activate the settings specified in the security IDS commands.
This command is nothing but an alias of the “security enable|disable IDS“
Note: You must enable the Security module using the command security on in order to use IDS
If you disable IDS during a session, any configuration changes made when IDS was enabled
are not deleted - you can re-enable them later in the session.
Note: You must enable the Security module using the command security on in order to use IDS
This CLI command is case-sensitive. You must type the command attributes exactly as
they appear in the Command Syntax section on this page. If you do not use the same
case-sensitive syntax, the command fails and the CLI displays a syntax error message
Options The following table gives the range of values for each option that can be specified with
this command and a Default Value (if applicable).
Example --> firewall enable IDS
See also security enable IDS, security disable IDS
4.3.2.0.3 FIREWALL ENABLE|DISABLE BLOCKINGLOG|INTRUSIONLOG|SESSIONLOG
Syntax firewall {enable | disable} {blockinglog|intrusionlog|ses-
sionlog}
Description This command enables/disables the entire Firewall module except for the IDS portion of
the module (see the command FIREWALL ENABLE|DISABLE IDS).
When the Firewall is enabled, all IP traffic on existing security interfaces that are NOT
featured in a Firewall policy is blocked. For details on setting default policy security levels
on security interfaces, see the FIREWALL SET SECURITYLEVEL command.
If you disable the Firewall during a session, any configuration changes made when the
Firewall was enabled remain in the Firewall, so that you can re-enable them later in the
session. If you need to reboot your system but want to save the Firewall configuration
between sessions, use the SYSTEM CONFIG SAVE command.
Option Description Default Value
enable Enables the IDS portion of the Security module. Disable
disable Disables the IDS portion of the Security module.