
wan <on|off> After a packet is IPSec processed and
will be sent to WAN side, this switch
is to control if this packet can be
applied IPSec again.
Remark: Command available since
3.50(WA.3)
show_runtime sa
display runtime phase 1 and phase 2
SA information
spd
When a dynamic rule accepts a
request and a tunnel is established, a
runtime SPD is created according to
peer local IP address. This command
is to show these runtime SPD.
switch <on|off>
As long as there exists one active
IPSec rule, all packets will run into
IPSec process to check SPD. This
switch is to control if a packet should
do this. If it is turned on, even there
exists active IPSec rules, packets will
not run IPSec process.
timer chk_my_ip <1~3600> - Adjust timer to check if WAN IP in
menu is changed
- Interval is in seconds
- Default is 10 seconds
- 0 is not a valid value
chk_conn. <0~255> - Adjust auto-timer to check if any
IPsec connection has no traffic for
certain period. If yes, system will
disconnect it.
- Interval is in minutes
- Default is 2 minuets
Comentários a estes Manuais