ZyXEL Confidential
340adq4c0
21/36
<yes|no>
retrieve firewall
Retrieve current saved firewall settings
save
firewall
Save the current firewall settings
display
firewall
Displays all the firewall settings
set <set#>
Display current entries of a set configuration;
including timeout values, name, default-permit,
and number of rules in the set.
set <set#>
rule <rule#>
Display current entries of a rule in a set.
attack
Display all the attack alert settings in PNC
Display all the e-mail settings in PNC
?
Display all the available sub commands
mail-server
<mail server IP>
Edit the mail server IP to send the alert
return-addr
<e-mail address>
Edit the mail address for returning an email alert
e-mail-to
address>
Edit the mail address to send the alert
policy <full |
hourly |daily |
weekly>
Edit email schedule when log is full or per hour,
day, week.
day <sunday |
monday | tuesday
| wednesday |
thursday | friday |
saturday>
Edit the day to send the log when the email policy
is set to Weekly
hour <0~23>
Edit the hour to send the log when the email
policy is set to daily or weekly
minute <0~59>
Edit the minute to send to log when the email
policy is set to daily or weekly
Subject
subject>
Edit the email subject
attack
send-alert
<yes|no>
Activate or deactivate the firewall DoS attacks
notification emails
block <yes|no>
Yes: Block the traffic when exceeds the
tcp-max-incomplete threshold
No: Delete the oldest half-open session when
exceeds the tcp-max-incomplete threshold
block-minute
<0~255>
Only valid when sets 'Block' to yes. The unit is
minute
minute-high
<0~255>
The threshold to start to delete the old half-opened
sessions to minute-low
minute-low
<0~255>
The threshold to stop deleting the old half-opened
session
max-incomplete-
high <0~255>
The threshold to start to delete the old half-opened
sessions to max-incomplete-low
max-incomplete-
low <0~255>
The threshold to stop deleting the half-opened
session
tcp-max-incompl
ete <0~255>
The threshold to start executing the block field
set <set#>
name <desired
name>
Edit the name for a set
default-permit
<forward|block>
Edit whether a packet is dropped or allowed when
it does not match the default set
icmp-timeout
<seconds>
Edit the timeout for an idle ICMP session before it
is terminated