Chapter 14 ALG

14.2 ALG Commands

The following table lists the alg commands. You must use the configure terminal command to enter the configuration mode before you can use these commands.

Table 63 alg Commands

COMMAND

DESCRIPTION

[no] alg sip [inactivity-

Turns on or configures the ALG.

timeout signal-port

Use inactivity-timeoutto have the ZyWALL apply SIP media and

<1025..65535> signal-

extra-port <1025..65535>

signaling inactivity time out limits.

 

media-timeout <1..86400>

Use signal-portwith a listening port number (1025 to 65535) if you are

signal-timeout <1..86400>

using SIP on a port other than UDP 5060.

transformation]

Use signal-extra-portwith a listening port number (1025 to 65535) if

 

 

you are also using SIP on an additional UDP port number, enter it here.

 

Use media-timeoutand a number of seconds (1~86400) for how long to

 

allow a voice session to remain idle (without voice traffic) before dropping

 

it.

 

Use signal-timeoutand a number of seconds (1~86400) for how long to

 

allow a SIP signaling session to remain idle (without SIP packets) before

 

dropping it.

 

Use transformation to have the ZyWALL modify IP addresses and port

 

numbers embedded in the SIP data payload. You do not need to use this if

 

you have a SIP device or server that will modify IP addresses and port

 

numbers embedded in the SIP data payload.

 

The no command turns off the SIP ALG or removes the settings that you

 

specify.

 

 

[no] alg <h323 ftp>

Turns on or configures the H.323 or FTP ALG.

[signal-port <1025..65535>

Use signal-portwith a listening port number (1025 to 65535) if you are

signal-extra-port

<1025..65535>

using H.323 on a TCP port other than 1720 or FTP on a TCP port other

than 21.

transformation]

 

 

Use signal-extra-portwith a listening port number (1025 to 65535) if

 

you are also using H.323 or FTP on an additional TCP port number, enter it

 

here.

 

Use transformation to have the ZyWALL modify IP addresses and port

 

numbers embedded in the H.323 or FTP data payload. You do not need to

 

use this if you have an H.323 or FTP device or server that will modify IP

 

addresses and port numbers embedded in the H.323 or FTP data payload.

 

The no command turns off the H.323 or FTP ALG or removes the settings

 

that you specify.

 

 

[no] alg sip defaultport

Adds (or removes) a custom UDP port number for SIP traffic.

<1..65535>

 

show alg <sip h323 ftp>

Displays the specified ALG’s configuration.

128

 

ZyWALL (ZLD) CLI Reference Guide