Command Reference Guide Global Configuration Mode Command Set
61200510L1-35E Copyright © 2005 ADTRAN 413

ip firewall

Use the ip firewall command to enable AOS se curity features including access control policies and lists,
Network Address Translation (NAT), and the stateful inspection firewall. Use the no form of this
command to disable the security functionality.
Syntax Description
No subcommands.
Default Values
By default, all AOS
security features are disabled.
Applicable Platforms
This command applies to the NetVanta 300, 1000R, 2000, 3000, 4000, and 5000 and Total Access 900
Series units.
Command History
Release 2.1 Command was introduced.
Disabling the AOS security features (using the no ip firewall command) does not affect
security configuration. All configuration parameters will remain intact, but no security
data processing will be attempted.
For information regarding the use of OSPF with ip firewall enabled, refer to the
Functional Note for router ospf on page 497.
Regarding the use of IKE negotiation for VPN with ip firewall enabled, there can be up to
six channel groups with 2 to 8 interfaces per group. Dynamic protocols are not yet
supported (only static). A physical interface can be a member of only one ch annel gro up.