Security Mode Configuration Commands
164
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
security-config[vpn-passthrough]>
l2tp_enable Y
security-config[vpn-passthrough]>
pptp_enable N
security-config[vpn-passthrough]>
save
Related show command: show security firewall attack_checks vpn_passthrough setup
security firewall attack_checks configure ipv6
This command configures ipv6 WAN security attack checks. After you have issued the
security firewall attack_checks configure ipv6 command, you enter the
security-config [attack-checks-ipv6] mode, and then you can edit one keyword and
associated parameter or associated keyword at a time in the order that you prefer.
Command example:
SRX5308>
security firewall attack_checks configure ipv6
security-config[attack-checks-ipv6]>
respond_to_ping_on_internet_ports N
security-config[attack-checks-ipv6]>
vpn_ipsec_passthrough Y
security-config[attack-checks-ipv6]>
save
Related show command: show security firewall attack_checks setup ipv6
Step 1 Format security firewall attack_checks configure ipv6
Mode security
Step 2 Format respond_to_ping_on_internet_ports {Y | N}
vpn_ipsec_passthrough {Y | N}
Mode security-config [attack-checks-ipv6]
Keyword Associated Keyword
to Select
Description
respond_to_ping_on_internet_ports Y or N Enables or disables the response to a
ping from the WAN port.
vpn_ipsec_passthrough Y or N Enables or disables IPSec VPN traffic
that is initiated from the LAN to reach the
WAN, irrespective of the default firewall
outbound policy and custom firewall
rules.