Install guide

Software Version 2.9.1 79
Software Version 2.9.1
C613-10486-00 REV C
set trigger
Syntax SET TRIGger=trigger-id
[FIREwall[={ALL|DOSattack|FRAgattack|HOStscan|PORtscan|
SESSION|SIPAutomax|SMUrfattack|SYNattack|TCPattack}]]
[MODE={STArt|END|BOTH}] [AFTer=hh:mm] [BEFore=hh:mm]
[{DAte=date|DAYs=day-list}] [NAMe=name]
[REPeat={Yes|No|ONCe|FORever|count}]
[TEST={YES|NO|ON|OFF|True|False}]
Description This command modifies the definition of a trigger for the firewall and defines
events and conditions that activate it.
show firewall
Syntax SHow FIREwall
Description This command displays a summary of all security policies that have been
created and the interfaces assigned to each policy (Figure 12, Table 9). This now
includes the status of SNMP session reporting.
Figure 12: Example output from the show firewall command
Firewall Event Description
SIPAutomax This trigger activates when the SIP ALG reaches the limit for the
number of SIP clients it can support in automatic mode. After this
trigger is first activated, further triggers are rate limited to once
every 20 minutes. The trigger will not activate again until at least
20 minutes have passed in which the limit is not exceeded.
Note that the firewall policy and source IP address script parameters
are not valid for this type of event. You can set the mode parameter
only to start for this trigger.
Firewall Configuration
Status .................... enabled
Enabled Notify Options .... all
Notify Port ............... 1
Notify Mail To ............ root@netman.company.com
SNMP Session Report ....... disabled
Maximum Packet Fragments .. 20
Sessions:
Maximum ................. 4000
Peak .................... 2589
Active .................. 400
.
.
.
Table 9: New parameters in the output of the show firewall command
Parameter Meaning
SNMP Session Report Status of SNMP session reporting; either enabled or disabled.