Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
1RWH Commands using port spec x0, 1x, etc. only take IDs for existing ports on the device. For example, the
TZ170 uses x0-x2, the Pro 2040 x0-x3, and the Pro 4060 x0-x5.
This User’s Guide contains the following sections:
• Input Data Format Specification
• Text Conventions
• Editing and Completion Features
• Command Hierarchy
• Configuration Security
• Management Methods for Each Appliance
• Initiating a Management Session
• Command Set Status
,QSXW'DWD)RUPDW6SHFLILFDWLRQ
The table below describes the data formats acceptable for most commands. H represents one or more
hexadecimal digit (0-9 and A-F). D represents one or more decimal digit.
,QSXW'DWD)RUPDWV
IP Address D.D.D.D
IP Address 0xHHHHHHHH
Integer Values D
7H[W&RQYHQWLRQV
Bold text indicates a command executed by interacting with the user interface.
Courier bold text indicates commands and text entered using the CLI.
Italic text indicates the first occurrence of a new term, as well as a book title, and also emphasized text.
In this command summary, items presented in italics represent user-specified information.
Items within angle brackets (“< >”) are required information.
Items within square brackets (“[ ]”) are optional information.
Items separated by a “pipe” (“|”) are options. You can select any of them.
Page 1
1RWH Though a command string may be displayed on multiple lines in this guide, it must be entered on a
single line with no carriage returns except at the end of the complete command.
(GLWLQJDQG&RPSOHWLRQ)HDWXUHV
You can use individual keys and control-key combinations to assist you with the CLI. The table below
describes the key and control-key combination functions.
.H\5HIHUHQFH7DEOH
Key(s) Function
Tab Completes the current word
? Displays possible command completions
CTRL+A Moves cursor to the beginning of the command line
CTRL+B Movers cursor to the previous character
CTRL+C Exits the Quick Start Wizard at any time
CTRL+E Moves cursor to the end of the command line
CTRL+F Moves cursor to the next character
CTRL+K Erases characters from the cursor to the end of the line
CTRL+N Displays the next command in the command history
CTRL+P Displays the previous command in the command history
CTRL+W Erases the previous word
Left Arrow Moves cursor to the previous character
Right Arrow Moves the cursor to the next character
Up Arrow Displays the previous command in the command history
Down Arrow Displays the next command in the command history
The Tab key can also be used to finish a command if the command is uniquely identified by user input.
myDevice> show al [TAB]
displays
myDevice> show alerts
Additionally, commands can be abbreviated as long as the partial commands are unique. The following
text:
myDevice> sho int inf
is an acceptable abbreviation for
myDevice> show interface info
Page 3
&RPPDQG+LHUDUFK\
The CLI configuration manager allows you to control hardware and firmware of the appliance through a
discreet mode and submode system. The commands for the appliance fit into the logical hierarchy shown
below.
To configure items in a submode, activate the submode by entering a command in the mode above it.
For example, to set the default LAN interface speed or duplex, you must first enter configure, then
interface x0 lan. To return to the higher Configuration mode, simply enter end or finished.
&RQILJXUDWLRQ6HFXULW\
SonicWALL Internet Security appliances allow easy, flexible configuration without compromising the
security of their configuration or your network.
3DVVZRUGV
The SonicWALL CLI currently uses the administrator’s password to obtain access. SonicWALL devices
are shipped with a default password of password. Setting passwords is important in order to access the
SonicWALL and configure it over a network.
)DFWRU\5HVHWWR'HIDXOWV
If you are unable to connect to your device over the network, you can use the command restore to reset
the device to factory defaults during a serial configuration session.
1RWH The default terminal settings on the SonicWALL and modules is 80 columns by 25 lines. To ensure the
best display and reduce the chance of graphic anomalies, use the same settings with the serial terminal
software. The device terminal settings can be changed, if necessary. Use the standard ANSI setting on
the serial terminal software.
1. Attach the included null modem cable to the appliance port marked CONSOLE. Attach the other end
of the null modem cable to a serial port on the configuring computer.
2. Launch any terminal emulation application that communicates with the serial port connected to the
appliance. Use these settings:
• 115,200 baud (9600 for TZ170)
• 8 data bits
• no parity
• 1 stop bit
• no flow control
3. Press Return. Initial information is displayed followed by a DEVICE NAME> prompt.
Page 5
6RQLF26(QKDQFHG&RPPDQG/LVWLQJ
The following table displays all commands available for the SonicWALL.
Command Description
show interface details Displays on the console the contents of the network
<x1|x2|x3|x4|x5> section of the TSR
Show interface status <x1|x2|x3|x4|x5> Displays on the console basic interface status for
the SonicWALL, such as active/inactive/disabled,
speed setting, duplex setting, IP addressing infor-
mation
show nat policies Display on the console the NAT policy section of the
TSR
show tsr <all | av | cfl | dhcpc Displays on the console the named TSR sections or
|dhcprelay | dhcps | dhcpsstat | eth- all of the TSR.
ernet | ha | ip-helper | ipsec |
l2tpclient | license | log | manage-
ment | network | objects | policies |
pppoe | pptpclient | radius | snmp |
status | time | update | users | wlb>
Page 7
7RS/HYHO&RPPDQGV
Command Description
Command Description
[no] arpt <IP address><MAC Add and remove arp entries for specified inter-
address> interface <lan|wan|dmz> face.
[perm] [pub]
GMS Configuration
[no] nat-address <IP Address> Sets the public NAT IP address that the GMS
server resides behind.
syslog-port <uvalue|(default)> Sets the syslog server port of the GMS server.
help <command> Displays the command and description
Page 9
/$1,QWHUIDFH&RQILJXUDWLRQ
Command Description
:$1,QWHUIDFH&RQILJXUDWLRQ
Command Description
Page 11
Command Description
Mode PPTP WAN [no] dynamic Sets the SonicWALL to obtain the
Interface IP address dynamically.
start
stop
Mode L2TP WAN [no] dynamic Sets the SonicWALL to obtain the
IP address dynamically.
start
stop
Page 13
Command Description
web-management http port <tcp port or Assigns the HTTP web manage-
’default’> ment port or reset to default.
Page 15
Command Description
6RQLF:$//266WDQGDUG&RPPDQGV
Show and Diag Commands (available at all levels)
Command Description
show tsr <all | av | cfl | dhcpc Displays to the console the contents of the
|dhcprelay | dhcps | dhcpsstat | TSR section named or all of the TSR.
ethernet | ha | ip-helper |
ipsec | l2tpclient | license |
log | management | network |
objects | policies | pppoe |
pptpclient | radius | snmp |
status | time | update | users |
wlb>
Command Description
web-management http port <tcp Assigns the HTTP web management port
port or ’default’> or reset to default.
web-management https port <tcp Assigns the HTTPS web management port
port or ’default’> or resets to default.
Page 17
Page 18 SonicWALL Command Line Interface Guide
SonicWALL,Inc.
1143 Borregas Avenue T: 408.745.9600 www.sonicwall.com
Sunnyvale,CA 94089-1306 F: 408.745.9300
© 2002 SonicWALL, Inc. SonicWALL is a registered trademark of SonicWALL, Inc. Other product and company names mentioned herein may be
trademarks and/ or registered trademarks of their respective companies. Specifications and descriptions subject to change with out notice.
P/ N 232- 000549- 00
Rev A 04/ 04