Cisco Systems 6500 Webvpn policy tcp tcp-policy-name, Timeout syn is 75 seconds, Default Exit

Page 108

Chapter 2 Commands for the Catalyst 6500 Series Switch WebVPN Module

webvpn policy tcp

webvpn policy tcp

To enter the proxy policy TCP configuration submode, use the webvpn policy tcp command. In proxy-policy TCP configuration submode, you can define the TCP policy templates.

webvpn policy tcp tcp-policy-name

Syntax Description

 

tcp-policy-name

TCP policy name.

 

 

 

 

Defaults

 

The defaults are as follows:

buffer-share rx is 32768 bytes.

buffer-share tx is 32768 bytes.

delayed-ack-threshold is 2 packets.

delay-ack-timeoutis 200 milliseconds.

mss is 1460 bytes.

nagle is enabled.

timeout inactivity is 600 seconds.

timeout fin-wait is 600 seconds.

timeout syn is 75 seconds.

timeout reassembly is 60 seconds.

tos carryover is disabled.

Command Modes

Command History

Global configuration

Release

Modification

WebVPN Module

Support for this command was introduced on the Catalyst 6500 series

Release 1.1

switches.

 

 

Usage Guidelines After you define the TCP policy, you can associate the TCP policy with a proxy server using the proxy-policy TCP configuration submode commands.

Each proxy-policy TCP configuration submode command is entered on its own line.

Table 2-11lists the commands that are available in proxy-policy TCP configuration submode.

Table 2-11 Proxy-policy TCP Configuration Submode Command Descriptions

default

exit

Sets a command to its default settings.

Exits from proxy-service configuration submode.

 

Catalyst 6500 Series Switch WebVPN Module Command Reference—Release 1.1

2-108

OL-7310-01

Image 108
Contents Commands for the Catalyst 6500 Series Switch WebVPN Module Defaults Command Modes Command HistoryClear webvpn nbns Release ModificationClear webvpn platform Webvpn# clear webvpn platform Clear webvpn session Clears the statistics for a specific contextUser name Specifies the user nameClear webvpn stats CifsMangle Port-forwardCrypto key export rsa pem TerminalUrl url 3desKey nametest-keys UsageGeneral Purpose Key Crypto key generate General-keysUsage-keys ExportableThis example shows how to generate special-usage RSA keys This example shows how to generate general-purpose RSA keysCrypto key generate rsa usage-keys Crypto key import rsa pem Release ModificationPEM-formatted RSA key to the WebVPN Services Module Crypto pki authenticate Crypto pki authenticate trustpoint-labelDefaults Command Modes Command History Usage Guidelines Crypto pki certificateWwbvpnconfig# crypto pki crl request Crypto pki crl requestCrypto pki crl request name This example shows how to request a certificate Webvpnconfig# crypto pki enroll PROXY1Crypto pki enroll Crypto pki enroll trustpoint-labelCrypto pki export pem Related Commands crypto pki import pem Crypto pki export pkcs12 This example shows how to export a PKCS12 file using SCP Wwbvpnconfig# crypto ca export TP1 pkcs12 scp sky is blueInclude the full path in the pkcs12filename value PKCS12 fileCrypto pki import pem Related Commands crypto pki export pem Usage Guidelines ExamplesCrypto pki import pkcs12 This example shows how to import a PKCS12 file using SCP Users/admin-1/pkcs12/TP2.p12Webvpnconfig# crypto pki profile enrollment test Crypto pki profile enrollmentCrypto pki profile enrollment label Crypto pki trustpoint Command Purpose and Guidelines Defaults Enrollment http-proxymode ra retry Period minutes-1Period minutes count count url url Count count-10Certificate map mapname command Password passwordMatch certificate mapname map override SkipSubject-name line Usage ike ssl-client ssl-serverVrf vrf Debug webvpn Event app next-hop tcp-Event debugging Trace module module- FDU traceCa-pool- CA Pool Cert- Certificate managementEvents- Events This example shows how to turn on tunnel debugging Usage Guidelines Nbns-list Nbns-list name no nbns-list nameMaster timeout Nbns-server ipaddrExit Policy group Banner value stringFilter tunnel ip-acl Functions file-access Timeout idleHide-url-bar Nbns-list nameWebvpnconfig# webvpn context cisco Webvpnconfig-webvpn-group#svc address-pool ciscotunlpoolDefault local-port Specifies the default local port valid values are from 1 toPort-forward Port-forward listname no port-forward listnameRelated Commands url-list Webvpn contextShow webvpn context Show webvpn context nameWebvpn# show web context tunnel Show webvpn dispatch Show webvpn dispatch algorithm member statsAlgorithm MemberSslvpn CLB Member Table Webvpn# show webvpn gateway s1 Admin Status up Show webvpn gatewayShow webvpn gateway name Webvpn# show webvpn gatewayShow webvpn install FileCsd StatusWebvpn# show web install file \webvpn\stc\version.txt Show webvpn nbns Show webvpn nbns context name allAll Show web nbns context allShow webvpn platform buffers Show webvpn-platform buffers module moduleShow webvpn-platform buffers module all Show webvpn platform context Show webvpn platform context name module moduleWebvpn# show webvpn platform context tunnel OL-7310-01 Show webvpn platform crash-info Show webvpn platform crash-info brief detailsBrief DetailsNvram Version This Core Didnt Crash Show webvpn platform gateway Show webvpn platform gateway name debug module moduleDebug Module moduleVlan ID This command has no default settings Show webvpn platform mac addressShow webvpn platform mac address ModuleShow webvpn platform policy Show webvpn platform policy ssl tcp nameSsl TcpShow webvpn platform version Show webvpn platform versionWebvpn# show webvpn platform version Show webvpn platform vlan Show webvpn platform vlan vlan-idWebvpn# show webvpn platform vlan Related Commands webvpn policy ssl Show webvpn policyGroup name Context name TcpShow webvpn session Context nameUser name Webvpn# show webvpn session context c1Show webvpn stats Show webvpn stats typeWebvpn# show webvpn stats Mangling statistics Relative urls 15705 Absolute urls 41850 DPD Page TCP VCs Active VCs Aborted Conns Webvpn# show web stats context tunnel DPD Snmp-server enable This example shows how to enable Snmp informs This example shows how to enable trapsThis example shows how to enable authentication traps Command Modes WebVPN group context submode Command History Release ModificationSvc Dns-server primary secondaryCommand Purpose and Guidelines Default Rekey method new-tunnel ssl No rekey methodRekey time interval No rekey timeUrl-list Url-list listname no url-list listnameHeading text Url-text text url-value url/exchageRelated Commands webvpn context Aaa authentication domain domain-list Specifies AAA configuration parameters for contextDefault-group-policy default-policy-name Webvpn contextInservice Login-message stringNo login-message Password-prompt promptSsl authenticate verify all none Authenticate verify -Specifies the SSLPolicy group policy-name Policy ssl policy-nameUrl-list listname Vrf-name vrf-nameColor Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Webvpnconfig-webvpn-context# url-list cisco 100 Webvpn gateway Secondary No policy tcpNo policy ssl Webvpnconfig# webvpn gateway common Webvpnconfig-webvpn-gateway#ip address 172.21.65.71 portContext and enter the gateway submode Webvpn policy ssl No session-cache enable Timeout handshake timeoutTimeout session timeout absolute HelpThis example shows how to enable session-cache This example shows how to disable session-cacheWwbvpnconfig# webvpn policy ssl sslpl1 Wwbvpnconfig-ssl-policy#cipher RSAWITH3DESEDECBCSHAThis example shows how to print out a help Related Commands show webvpn statsWwbvpnconfig-ssl-policy#timeout session 30000 absolute Timeout syn is 75 seconds Timeout reassembly is 60 seconds Tos carryover is disabledDefault Exit Webvpn policy tcpDelayed-ack-threshold Delay-ack-timeoutNo timeout fin-wait timeout-in-seconds No timeout inactivity timeout-in-secondsNo timeout reassembly time Form of this command to return to the default settingNo tos carryover Server to client connection, the server connection must be111 112
Related manuals
Manual 20 pages 62.17 Kb Manual 160 pages 24.26 Kb Manual 262 pages 31.67 Kb