Configuring intrazone NAT ALG through the CLI on the USG6000

39

The USG6000 series supports configuring intrazone NAT ALG through the CLI.
For example, enable the NAT ALG function for the FTP protocol in the Trust zone.
system-view
[sysname] firewall zone trust
[sysname-zone-trust] detect ftp
For details, see the USG6000 series product documentation.

Other related questions:
Configuring interzone NAT ALG through the CLI on the USG6000
The USG6000 series supports configuring interzone NAT ALG through the CLI. For example, enable the NAT ALG function for the FTP protocol in the interzone between the Trust zone and the Untrust zone. system-view [sysname] firewall interzone trust untrust [sysname-interzone-trust-untrust] detect ftp For details, see the USG6000 series product documentation.

Configuring global NAT ALG through the CLI on the USG6000
To simplify configurations, the USG6000 series supports configuring the global NAT ALG function. Enabling the global ASPF function equals to enabling the interzone and intrazone NAT ALG functions. The global NAT ALG function and interzone/intrazone NAT ALG function are logically ORed. Select one of them as required. For example, configure the global NAT ALG function to detect FTP traffic. system-view [sysname] firewall detect ftp

Configuring intrazone ASPF through the CLI on the USG6000
The USG6000 series supports configuring the intrazone ASPF function through the CLI. For example, enable the ASPF function for the FTP protocol in the Trust zone. system-view [sysname] firewall zone trust [sysname-zone-trust] detect ftp The protocol types that can be detected in the intrazone view include DNS, FTP, H.323, ILS, MGCP, MMS, MSN, NetBIOS, PPTP, QQ, RTSP, SIP, and SQL.NET.

Configuring global ASPF through the CLI on the USG6000
To simplify configurations, the USG6000 series supports configuring the global ASPF function. Enabling the global ASPF function equals to enabling the interzone and intrazone ASPF functions. The global ASPF function and interzone/intrazone ASPF function are logically ORed. Select one of them as required. For example, configure the global ASPF function to detect FTP traffic. system-view [sysname] firewall detect ftp

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top