ZyXEL Communications 4.04 Network Card User Manual


 
Chapter 16 IPSec Commands
ZyWALL (ZyNOS) CLI Reference Guide
125
ipsec ipsecConfig lcPortStart <port> Sets the starting port for local network traffic. Only
traffic using the specified ports can go through the
VPN tunnel.
R+B
ipsec ipsecConfig lcPortEnd <port> Sets the ending port for local network traffic. R+B
ipsec ipsecConfig rmAddrType
<0:single|1:range|2:subnet>
Sets the address type for the remote network. R+B
ipsec ipsecConfig rmAddrStart <ip-
address>
Sets the remote network starting IP address. R+B
ipsec ipsecConfig rmAddrEndMask <ip-
address|subnet-mask>
Sets the remote network ending IP address for a
range or the subnet mask for a subnet.
R+B
ipsec ipsecConfig rmPortStart <port> Sets the starting port for remote network traffic. Only
traffic using the specified ports can go through the
VPN tunnel.
R+B
ipsec ipsecConfig rmPortEnd <port> Sets the ending port for remote network traffic. R+B
ipsec ipsecConfig activeZero <Yes|No> Turns Zero Configuration mode on or off. R+B
ipsec ipsecConfig natActive <Yes|No> Turns NAT over IPSec on or off. R+B
ipsec ipsecConfig natType <0:One-to-
One|1:Many-to-One|2:Many-One-to-One>
Sets the NAT mapping types. R+B
ipsec ipsecConfig natPrivateStart
<ip-address>
Sets the private network starting IP address when
you enable NAT over IPSEC.
R+B
ipsec ipsecConfig natPrivateEnd <ip-
address>
Sets the private network ending IP address when
you enable NAT over IPSEC.
R+B
ipsec policyList Lists all IPSec policy rules. R+B
ipsec manualDisplay <rule-number> Displays the specified manual rule. Or displays all
runtime manual rules without specifying a rule. Use
manualAdd or manualEdit to load a manual rule
before using this command.
R+B
ipsec manualAdd Allocates a working buffer to add an manual rule. R+B
ipsec manualEdit <rule-number> Loads the specified manual rule for editing. R+B
ipsec manualSave Saves the manual rule settings from the working
buffer to the non-volatile memory.
R+B
ipsec manualList Lists all manual rules. R+B
ipsec manualDelete <rule-number> Deletes the specified manual rule. R+B
ipsec manualConfig name <string> Sets the manual rule name.
<string>: Up to 31 characters.
R+B
ipsec manualConfig active <Yes|No> Activates the manual rule. R+B
ipsec manualConfig myIpAddr <ip-
address|domain-name>
Sets the local gateway address to the specified IP
address or domain name.
R
ipsec manualConfig secureGwAddr <ip-
address|domain-name>
Sets the remote gateway address to the specified IP
address or domain name.
R+B
ipsec manualConfig protocol
<1:ICMP|6:TCP|17:UDP>
Sets the traffic protocol that can trigger the VPN
tunnel and be forwarded through it.
R+B
ipsec manualConfig lcAddrType
<0:single|1:range|2:subnet>
Sets the local address type. R+B
Table 61 Ipsec Commands (continued)
COMMAND DESCRIPTION M