Chapter 15. Command Line Reference

 

Field Name

Field Type

Explanation

cert

OptCertReference

A certificate to use for this IP/port

 

 

combination.

ip

OptOwnIpReference

An IP address of this unit.

port

PortNumber

A port number of the IP address.

ipsec.tunneled_nets

Corresponding setting in web GUI: IPsec Tunnels on page IPsec Tunnels

Table type: Dynamic

Definitions of which networks can use each IPsec connection.

Field Name

Field Type

Explanation

ipsec_sa_life

IpsecSALife

IPsec key lifetime.

local_net

OptIpsecNetReference

The local network which can use the

 

 

connection.

local_type

IpsecNetLocalSel

The type of IP for which the IPsec

 

 

connection is negotiated and which can use

 

 

the connection.

nat_as_address

OptOwnIpReference

What address traffic through this tunnel

 

 

should be NAT:ed as, if set. The IPsec SA

 

 

will be negotiated for this address too,

 

 

instead of the specified local network.

peer

IpsecPeer_Group

The peer for which network definitions are

 

 

made.

remote_net

OptIpsecNetReference

The remote network which can use the

 

 

connection.

remote_type

IpsecNetRemoteSel

The type of IP for which the IPsec

 

 

connection is negotiated and which can use

 

 

the connection.

ipsec.userauth_logclass

Corresponding setting in web GUI: Log class for IPsec user authentications on pages IPsec Settings and Logging Configuration

Table type: Single row

The log class for IPsec user authentications.

Field Name

Field Type

Explanation

logclass

VPNLogclassReference

A log class.

ipsec.x509_cacerts

Corresponding setting in web GUI: CA Certificates on page IPsec Certificates

Table type: Dynamic

Certificates for CAs which have signed IPsec peer certificates.

252