Chapter 33 IPSec VPN
ZyWALL Series CLI Reference Guide
286
33.2.4 VPN Concentrator Commands
This table lists the commands for the VPN concentrator.
33.2.5 VPN Configuration Provisioning Commands
This table lists the commands for VPN configuration provisioning.
Table 150 vpn-concentrator Commands: VPN Concentrator
COMMAND DESCRIPTION
show vpn-concentrator
[profile_name]
Shows the specified VPN concentrator or all VPN concentrators.
[no] vpn-concentrator
profile_name
Creates the specified VPN concentrator if necessary and enters
sub-command mode. The
no command deletes the specified
VPN concentrator.
[no] crypto map_name
Adds the specified IPSec SA to the specified VPN concentrator.
The
no command removes the specified IPSec SA from the
specified VPN concentrator.
vpn-concentrator rename
profile_name profile_name
Renames the specified VPN concentrator (first profile_name) to
the specified name (second profile_name).
Table 151 vpn-configuration-provision Commands: VPN Configuration Provisioning
COMMAND DESCRIPTION
vpn-configuration-provision rule
{ append | conf_index | insert
conf_index }
Enters the VPN configuration provisioning sub-command mode to
add or edit a rule.
conf_index: The index number of a VPN configuration provisioning
rule, 1 to the Zyxel Device’s maximum number of VPN connection
rules.
[no] activate
Turns the VPN configuration provisioning rule on or off.
crypto map_name
Specifies the name of the IPSec VPN connection (map_name) to
bind to this VPN configuration provisioning rule’s user or group.
user username
Specifies a user or group of users allowed to use the Zyxel Device
IPSec VPN client to retrieve the associated VPN rule settings. A user
may belong to a number of groups. If VPN configuration
provisioning rules are configured for different groups, the Zyxel
Device will allow VPN rule setting retrieval based on the first match
found. Admin or limited-admin users are not allowed.
no user
Removes the VPN configuration provisioning rule’s user or user
group configuration. In other words, any users can match the rule.
In the GUI “any” will display in the Allowed User field.
[no] ul-bandwidth-limit
<1...1048576>
Sets the maximum bandwidth for uploading traffic from IPsec VPN
clients over IPSec VPN tunnels.
This feature is available for Zyxel subscription-based SecuExtender
IPSec VPN clients with Window version 5.6.80.007 or later or macOS
version 1.2.0.7 or later.
exit
Leaves sub-command mode.
vpn-configuration-provision rule
{ delete conf_index | move
conf_index to conf_index }
Deletes or moves the specified VPN configuration provisioning rule.
[no] vpn-configuration-provision
activate
Turns the VPN configuration provisioning service on or off.