beautypg.com

Ip firewall logging – Enterasys Networks X-Pedition XSR CLI User Manual

Page 664

background image

Firewall Feature Set Commands

16-120 Configuring Security

Syntax of the “no” Form

The no form of this command cancels a scheduled load and unlocks the firewall config CLI:

XSR(config)#no ip firewall load delay

Mode

Global configuration: 

XSR(config)#

Examples

The following example verifies the firewall configuration is correct:

XSR(config)#ip firewall load trial

This example schedules a load in five days, three hours and 20 minutes:

XSR(config)#ip firewall load delay 5 03:20

After the load is performed, the following message will display:

XSR(config)#<186>Mar 17 22:30:22 10.10.10.20 FW: Firewall Shutdown and Restarted
<186>Mar 17 22:30:22 10.10.10.20 FW: Firewall: The Firewall has just executed a
delayed load command successfully

ip firewall logging

This command defines logging object parameters that apply to the firewall log operation. Logging 
is cumulative. For example, by selecting Level 3, the firewall will generate all messages from 
Levels 3 to 0. If you set logging to Level 0, the number of messages will be minimal.

Levels 0 to 3 are designated for attacksdenies and other system‐related logs such as memory 
failures. Levels 4 to 7 are designated for permitswarnings and other informational logs. There are 
very few debug level logs so in order to see permits a setting of 5 or 6 is sufficient.

enable disable

Executes or terminates the firewall load.

Note: If the command is issued when a load delay is pending, the following error message displays:

Load: Configuration locked due to scheduled load delay