Chapter 20 Application Patrol

Table 81 Input Values for Application Patrol Commands (continued)

LABEL DESCRIPTION

zone_name The name of a zone. You may use 1-31 alphanumeric characters, underscores(_), or dashes (-), but the first character cannot be a number. This value is case-sensitive.

schedule_name The name of a schedule. You may use 1-31 alphanumeric characters, underscores(_), or dashes (-), but the first character cannot be a number. This value is case-sensitive.

The following sections list the application patrol commands.

20.2.1 Pre-defined Application Commands

This table lists the commands for each pre-defined application.

Table 82 app Commands: Pre-Defined Applications

COMMAND

DESCRIPTION

[no] app protocol_name activate

Enables application patrol for the specified application. The no

 

command disables application patrol for the specified application.

[no] app protocol_name allowport <1..65535>

If the default action is drop or reject. Adds the specified port to the

 

list of ports that are forwarded in spite of the default action. The no

 

command removes the specified port from the list.

app protocol_name bandwidth <0..102400>

Specifies the bandwidth limit (in kilobits per second) for the specified

 

application.

 

 

bandwidth-graph

 

[no] app protocol_name bwm

Turns on bandwidth management for the specified application. The

 

no command turns off bandwidth management for the specified

 

application.

[no] app protocol_name defaultport

For port-base applications. Adds the specified port to the list of ports

<1..65535>

used to identify the specified application. This port number can only

 

be included in one application’s list. The no command removes the

 

specified port from the list.

app protocol_name {forward drop reject}

Specifies what action the ZyWALL should take when it identifies this

 

application.

 

 

app protocol_name mode {portless portbase}

Specifies how the ZyWALL identifies this application.

[no] app protocol_name log [alert]

Creates log entries (and alerts) for the specified application. The no

 

command does not create any log entries.

20.2.2 Rule Commands for Pre-defined Applications

This table lists the commands for rules in each pre-defined application.

Table 83 app Commands: Rules in Pre-Defined Applications

COMMAND

DESCRIPTION

app protocol_name rule insert rule_number

Creates a new rule at the specified row and enters sub-command

 

mode. See Table 84 on page 165 for the sub-commands.

app protocol_name rule append

Creates a new rule, appends it to the end of the list, and enters sub-

 

command mode. See Table 84 on page 165 for the sub-commands.

 

 

app protocol_name rule rule_number

Enters sub-command mode for editing the rule at the specified row.

or

See Table 84 on page 165 for the sub-commands.

app protocol_name rule modify rule_number

 

164

 

ZyWALL (ZLD) CLI Reference Guide