Security Mode Configuration Commands
174
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Command example:
SRX5308>
security porttriggering_rules add
security-config[porttriggering-rules]>
name Skype
security-config[porttriggering-rules]>
enable_rule Y
security-config[porttriggering-rules]>
protocol TCP
security-config[porttriggering-rules]>
outgoing_start_port 61196
security-config[porttriggering-rules]>
outgoing_end_port 61196
security-config[porttriggering-rules]>
incoming_start_port 61197
security-config[porttriggering-rules]>
incoming_end_port 61197
security-config[porttriggering-rules]>
save
Related show command: show security porttriggering_rules setup and show security
porttriggering_rules status
security porttriggering_rules edit <row id>
This command configures an existing port triggering rule. After you have issued the
security porttriggering_rules edit command to specify the row to be edited, you
enter the security-config [porttriggering-rules] mode, and then you can configure one keyword
and associated parameter or associated keyword at a time in the order that you prefer. You
cannot change the name of the rule.
outgoing_start_port number The start port number (integer) of the outgoing
traffic range. Valid numbers are from 1025 to
65535.
outgoing_end_port number The end port number (integer) of the outgoing
traffic range. Valid numbers are from 1025 to
65535.
incoming_start_port number The start port number (integer) of the incoming
traffic range. Valid numbers are from 1025 to
65535.
incoming_end_port number The end port number (integer) of the incoming
traffic range. Valid numbers are from 1025 to
65535.
Step 1 Format security porttriggering_rules edit <row id>
Mode security
Keyword Associated Keyword to
Select or Parameter to Type
Description