Connected NCT # Show Full-Configuration #Config-Version
Total Page:16
File Type:pdf, Size:1020Kb
Connected NCT # show full-configuration #config-version=FG200A-4.00-FW-build178-090820:opmode=0:vdom=0 #conf_file_ver=10491300511546348673 #buildno=0178 config system global set access-banner disable set admin-https-pki-required disable set admin-lockout-duration 60 set admin-lockout-threshold 3 set admin-maintainer enable set admin-port 80 set admin-scp disable set admin-server-cert "self-sign" set admin-sport 443 set admin-ssh-port 22 set admin-ssh-v1 disable set admin-telnet-port 23 set admintimeout 5 set anti-replay strict set auth-cert "self-sign" set auth-http-port 1000 set auth-https-port 1003 set auth-keepalive disable set auth-policy-exact-match enable set av-failopen pass set av-failopen-session disable set batch-cmdb enable set cfg-save automatic --More-- set check-protocol-header loose --More-- set check-reset-range disable --More-- set clt-cert-req disable --More-- set daily-restart disable --More-- set detection-summary enable --More-- set dst disable --More-- set endpoint-control-portal-port 8009 --More-- set failtime 5 --More-- set fds-statistics enable --More-- set fsae-burst-size 300 --More-- set fsae-rate-limit 100 --More-- set gui-ipv6 disable --More-- set gui-lines-per-page 50 --More-- set hostname "NCT" --More-- set http-obfuscate modified --More-- set ie6workaround disable --More-- set internal-switch-mode switch --More-- unset internal-switch-speed --More-- set interval 5 --More-- set ip-src-port-range 1024-25000 --More-- set language english --More-- set lcdpin ENC XXVrg9a1cu6os --More-- set lcdprotection disable --More-- set ldapconntimeout 500 --More-- set log-user-in-upper disable --More-- set loglocaldeny disable --More-- set management-vdom "root" --More-- set phase1-rekey enable --More-- set radius-port 1812 --More-- set refresh 0 --More-- set registration-notification enable --More-- set remoteauthtimeout 5 --More-- set reset-sessionless-tcp disable --More-- set send-pmtu-icmp enable --More-- set service-expire-notification enable --More-- set sslvpn-sport 10443 --More-- set strong-crypto disable --More-- set tcp-halfclose-timer 120 --More-- set tcp-halfopen-timer 60 --More-- set tcp-option enable --More-- set tcp-timewait-timer 120 --More-- set timezone 04 --More-- set tos-based-priority high --More-- set udp-idle-timer 180 --More-- set user-server-cert "self-sign" --More-- set vdom-admin disable --More-- set vip-arp-range restricted --More-- set wireless-controller enable --More-- set wireless-controller-port 5246 --More-- set fds-statistics-period 60 --More-- end --More-- config system accprofile --More-- edit "prof_admin" --More-- set admingrp read-write --More-- set authgrp read-write --More-- set endpoint-control-grp read-write --More-- set fwgrp read-write --More-- set loggrp read-write --More-- unset menu-file --More-- set mntgrp read-write --More-- set netgrp read-write --More-- unset roles --More-- set routegrp read-write --More-- set sysgrp read-write --More-- set updategrp read-write --More-- set utmgrp read-write --More-- set vpngrp read-write --More-- next --More-- end --More-- config system interface --More-- edit "wan1" --More-- set vdom "root" --More-- set mode dhcp --More-- set distance 5 --More-- set priority 0 --More-- set dhcp-relay-service disable --More-- unset dhcp-relay-ip --More-- set dhcp-relay-type regular --More-- unset ip --More-- set allowaccess ping https http --More-- set gwdetect disable --More-- unset detectserver --More-- set detectprotocol ping --More-- set ha-priority 0 --More-- set dns-query disable --More-- set arpforward enable --More-- set broadcast-forward disable --More-- set bfd global --More-- set l2forward disable --More-- set icmp-redirect enable --More-- set vlanforward enable --More-- set stpforward disable --More-- set ips-sniffer-mode disable --More-- set ident-accept disable --More-- set ipmac disable --More-- set subst disable --More-- set log disable --More-- set fdp disable --More-- set ddns disable --More-- set status up --More-- set netbios-forward disable --More-- set wins-ip 0.0.0.0 --More-- set type physical --More-- set tcp-mss 0 --More-- set inbandwidth 0 --More-- set outbandwidth 0 --More-- set spillover-threshold 0 --More-- set description '' --More-- set alias "NCT" --More-- config ipv6 --More-- set autoconf disable --More-- set ip6-address ::/0 --More-- unset ip6-allowaccess --More-- set ip6-default-life 1800 --More-- set ip6-hop-limit 0 --More-- set ip6-link-mtu 0 --More-- set ip6-manage-flag disable --More-- set ip6-max-interval 600 --More-- set ip6-min-interval 198 --More-- set ip6-other-flag disable --More-- set ip6-reachable-time 0 --More-- set ip6-retrans-time 0 --More-- set ip6-send-adv disable --More-- end --More-- set dhcp-client-identifier '' --More-- set idle-timeout 0 --More-- set defaultgw enable --More-- set dns-server-override enable --More-- unset macaddr --More-- set speed auto --More-- set mtu-override disable --More-- set wccp disable --More-- set explicit-web-proxy disable --More-- next --More-- edit "wan2" --More-- set vdom "root" --More-- set mode static --More-- set dhcp-relay-service disable --More-- unset dhcp-relay-ip --More-- set dhcp-relay-type regular --More-- set ip 0.0.0.0 0.0.0.0 --More-- set allowaccess ping --More-- set gwdetect disable --More-- unset detectserver --More-- set detectprotocol ping --More-- set ha-priority 0 --More-- set dns-query disable --More-- set pptp-client disable --More-- set arpforward enable --More-- set broadcast-forward disable --More-- set bfd global --More-- set l2forward disable --More-- set icmp-redirect enable --More-- set vlanforward enable --More-- set stpforward disable --More-- set ips-sniffer-mode disable --More-- set ident-accept disable --More-- set ipmac disable --More-- set subst disable --More-- set log disable --More-- set fdp disable --More-- set ddns disable --More-- set status up --More-- set netbios-forward disable --More-- set wins-ip 0.0.0.0 --More-- set type physical --More-- set tcp-mss 0 --More-- set inbandwidth 0 --More-- set outbandwidth 0 --More-- set spillover-threshold 0 --More-- set description '' --More-- set alias '' --More-- config ipv6 --More-- set autoconf disable --More-- set ip6-address ::/0 --More-- unset ip6-allowaccess --More-- set ip6-default-life 1800 --More-- set ip6-hop-limit 0 --More-- set ip6-link-mtu 0 --More-- set ip6-manage-flag disable --More-- set ip6-max-interval 600 --More-- set ip6-min-interval 198 --More-- set ip6-other-flag disable --More-- set ip6-reachable-time 0 --More-- set ip6-retrans-time 0 --More-- set ip6-send-adv disable --More-- end --More-- set idle-timeout 0 --More-- unset macaddr --More-- set speed auto --More-- set mtu-override disable --More-- set wccp disable --More-- set explicit-web-proxy disable --More-- next --More-- edit "dmz1" --More-- set vdom "root" --More-- set mode static --More-- set dhcp-relay-service disable --More-- unset dhcp-relay-ip --More-- set dhcp-relay-type regular --More-- set ip 10.10.10.1 255.255.255.0 --More-- set allowaccess ping https --More-- set gwdetect disable --More-- unset detectserver --More-- set detectprotocol ping --More-- set ha-priority 0 --More-- set dns-query disable --More-- set pptp-client disable --More-- set arpforward enable --More-- set broadcast-forward disable --More-- set bfd global --More-- set l2forward disable --More-- set icmp-redirect enable --More-- set vlanforward enable --More-- set stpforward disable --More-- set ips-sniffer-mode disable --More-- set ident-accept disable --More-- set ipmac disable --More-- set subst disable --More-- set log disable --More-- set fdp disable --More-- set ddns disable --More-- set status up --More-- set netbios-forward disable --More-- set wins-ip 0.0.0.0 --More-- set type physical --More-- set tcp-mss 0 --More-- set inbandwidth 0 --More-- set outbandwidth 0 --More-- set spillover-threshold 0 --More-- set description '' --More-- set alias '' --More-- config ipv6 --More-- set autoconf disable --More-- set ip6-address ::/0 --More-- unset ip6-allowaccess --More-- set ip6-default-life 1800 --More-- set ip6-hop-limit 0 --More-- set ip6-link-mtu 0 --More-- set ip6-manage-flag disable --More-- set ip6-max-interval 600 --More-- set ip6-min-interval 198 --More-- set ip6-other-flag disable --More-- set ip6-reachable-time 0 --More-- set ip6-retrans-time 0 --More-- set ip6-send-adv disable --More-- end --More-- set idle-timeout 0 --More-- unset macaddr --More-- set speed auto --More-- set mtu-override disable --More-- set wccp disable --More-- set explicit-web-proxy disable --More-- next --More-- edit "dmz2" --More-- set vdom "root" --More-- set mode static --More-- set dhcp-relay-service disable --More-- unset dhcp-relay-ip --More-- set dhcp-relay-type regular --More-- set ip 0.0.0.0 0.0.0.0 --More-- set allowaccess ping --More-- set gwdetect disable --More-- unset detectserver --More-- set detectprotocol ping --More-- set ha-priority 0 --More-- set dns-query disable --More-- set pptp-client disable --More-- set arpforward enable --More-- set broadcast-forward disable --More-- set bfd global --More-- set l2forward disable --More-- set icmp-redirect enable --More-- set vlanforward enable --More-- set stpforward disable --More-- set ips-sniffer-mode disable --More-- set ident-accept disable --More-- set ipmac disable --More-- set subst disable --More-- set log disable --More-- set fdp disable --More-- set ddns disable --More-- set status up --More-- set netbios-forward disable --More-- set wins-ip 0.0.0.0 --More-- set type physical --More-- set tcp-mss 0 --More-- set inbandwidth 0 --More-- set outbandwidth 0 --More--