ZyXEL Communications P-2602H-D7A, P-2602HL, P-2602H-D3A, P-2602H, P-2602HL-D1A Firmware Release Notes

...
ZyXEL Confidential
ZyXEL
Firmware Release Note
P-2602H/HL/HW/HWL-D1A
Release 3.40(ADQ.4)C0
Date: March 16 2007 Author: Chun Hsing Chien
340adq4c0
1/36
ZyXEL Confidential
ZyXEL P-2602H/HL/HW/HWL-D1A Standard
Version
Release 3.40(ADQ.4)C0
Release Note
Date: March 16, 2007
Supported Platforms:
ZyXEL P-2602H/HL/HW/HWL-D1A
Versions:
ZyNOS Version: V3.40(ADQ.4) | 03/16/2007 Bootbase Version: V1.13 | 02/16/2006 14:05:00
Notes:
The P-2602HWL-D1A, is 4th generation of ZyXEL ADSL product family. It is a high performance ADSL/ADSL2 router for small/medium office to have Internet access and LAN-to-LAN application over the existing copper line. P-2602HWL-D1A takes advantage of much higher data rate than ADSL, speed up to 12Mbps (ADSL2), faster start-up, advanced diagnostics and better power management. This high performance ADSL router is a high integrated 4 port 10/100M auto MDI/MDIX switch, advanced secure VPN/Firewall, Bandwidth Management, IEEE 802.11g wireless access, and Voice over IP communication capability for small/medium business or small remote office. P2602HWL-D1A provides an embedded mini-PCI module for 802.11g Wireless LAN connectivity, four single auto-sensing, auto-detection 10/100BASE-T Ethernet ports for connection to the user’s local network, and a single RJ-11/RJ-45 port for connection to ADSL/ADSL2 line.
The version of modem code is TI AR7 06.00.04.00. The version of Wireless APDK code is 6.3.1.26
340adq4c0
2/36
ZyXEL Confidential
Features:
Modifications in V 3.40(ADQ.4) | 03/16/2007
1. Change to FCS version.
Modifications in V 3.40(ADQ.4)b3 | 03/07/2007
2. [BUG FIX][SPR: 070129541]
When DTMF Mode field was set to RFC2833 and call from SIP endpoint to DUT's PSTN network (SIP to FXO), DUT will send SIP INFO DTMF packets to PSTN switch.
3. [BUG FIX][SPR: 070130629]
When DTMF Mode field was set to RFC2833(or PCM) and VoIP trunking is disabled, DUT will send RFC2833(or PCM) and SIP INFO at the same time.
4. [BUG FIX][SPR: 070213108]
Callee side Enable Trunking, Caller one Call use PSTN Call to Callee and another Call use VoIP Call (Codec=G.729) to Callee, Callee will occur exception.
5. [BUG FIX]
System got crash when configuring WPA setting in SMT menu 23.4.
Modifications in V 3.40(ADQ.4)b2 | 02/08/2007
[BUG FIX][SPR: 070130630]
When setting "Voice Compression Type" to "G_726-16" or "G_726-24", caller can not
make the VoIP call with callee.
Modifications in V 3.40(ADQ.4)b1 | 01/17/2007
[ENHANCEMENT]
Support VoIP Romfile convert to make it backward compatiable with ADQ/AJK.2 and
ADQ/AJK.3
Converted settings included: SIP, PhoneBook and PhoneConfig feature keys. Support "ip ippolicy" cli command. Support WLAN NVS file format check after NVS file is downloaded. (TE requirement) Support “ip teifconf” cli command for TE test program. (TE requirement) Support “DRAM Post test” on HTP test. (TE requirement)
[BUG FIX]
Change FXO DTMF type from SIP_INFO to PCM type to fix sometimes unexpected digits be detected from fxo port.
Modifications in V 3.40(ADQ.3)C0 | 12/13/2006
Change to FCS version.
Modifications in V 3.40(ADQ.3)b5 | 12/05/2006
[ENHANCEMENT]
TR-069 enhancement:
340adq4c0
3/36
ZyXEL Confidential
Change the HTTP session maintaintance to "Keep Alive" for each TR-069 session. Enlarge the SOAP message body container size from 4096 to 8192.
Modifications in V 3.40(ADQ.3)b4 | 11/16/2006
[ENHANCEMENT]
Support firewall rule page control.on Web GUI “Security > Firewall > Rules”.
The number of page control is 10.
Update following Web help contents
Security > Certificates > My Certificates Advanced > Bandwidth MGMT > General VoIP > Phone > Common VoIP > Phone > Analog Phone > Advanced VoIP > Phone Book > Distinctive Ring
Modifications in V 3.40(ADQ.3)b3 | 10/24/2006
[ENHANCEMENT]
Support Full G.726 Codec for GUI & CLI command. Support G.723 Codec for CLI command only. Support Call Fallback GUI. Support Auto Dail(HotLine) GUI. Enhanced Distinctive Ring GUI and rename Group Ring to Distinctive Ring.
Modifications in V 3.40(ADQ.3)b2 | 09/27/2006
[ENHANCEMENT]
Support Auto MBM Synchronize the reset button behavior
1 sec: enable/disable WLAN function 3 sec: enable OTIST
10 sec: reset to factory default Support Certificates Support VPN with Certificate security. Enhance Phone Configuration
Do not disturb (*95# , #95#)
Call Forward to configure call fotable. (*21#, #21#, *22*, *23*, *24*) Remove STUN support Remove Web GUI HTTPS configuration in Remote Management.
Modifications in V 3.40(ADQ.3)b1 | 08/11/2006
[ENHANCEMENT]
Call Features:
Support Call Park / Call Pickup Support Call return Support Call Waiting Active/Inactive Support Caller ID enable/disable
340adq4c0
4/36
ZyXEL Confidential
Support Phase 2 Country code Support Distinctive Ringing(Group Ring) Support Do not disturb Support Early Media Support Hot line Support Music on Hold Support MWI Support Phone configuration Call through cross PSTN network(TRUNKING)
Provisioing& Management
Support TR104 provisioning
NAT traversal
Support STUN
MISC
Support TR-069/TR-104 Support CONE NAT on-line change type Support VOICE_PACKET_ROUTE
WLAN
Upgrade TI APDK 6.3.0.126 Support WiFi new spec requires 64 char shared key with Radius server
Modifications in V 3.40(ADQ.2)C0 | 07/24/2006
Change to FCS version.
[KNOWN ISSUE]
When Country Code=UK, the Caller ID can’t display.
Modifications in V 3.40(ADQ.2)b2 | 07/21/2006
[BUGFIX]
Analog Phone 1 & Phone 2 can't display CLID.
Modifications in V 3.40(ADQ.2)b1 | 07/18/2006
[ENHANCEMENT]
Country Code support for different ring and tone for USA, AUSTRIA, BELGIUM, DENMARK, FINLAND, NETHERLAND, NORWAY, SPAIN, SWEDEN, SWITZERLAND, UK GERMANY, Australia, Ireland, CZECH and ITALY, total 16 countries.
1. Support Ring for Frequency, Amplitude(Vrms)-No load, Amplitude(Vrms)-5
REN, and Cadence.
2. Support Tone for Dial Tone, Busy Tone, Congestion Tone, Ringback Tone,
Call Wait Tone, and Re-order Tone.
3. Codec DAA is not supported yet.
4. Caller ID (CID) is not supported yet.
Modifications in V 3.40(ADQ.3)b1 | 06/19/2006
340adq4c0
5/36
ZyXEL Confidential
1. [ENHANCEMENT]
Support HTTPS
Support TR-069 /TR-104 with HTTPS Support CONE NAT on-line change type Support up to 13 WLAN channels and high power by country code Support VOICE_PACKET_ROUTE (decide which PVC for voice packet)
Modifications in V 3.40(ADQ.1)C0 | 06/19/2006
Change to FCS version.
[KNOWN ISSUE]
IOP issue with Centrino2200BG, low WLAN throughput within 50cm distance
Modifications in V 3.40(ADQ.1)b1 | 06/13/2006
[ENHANCEMENT]
Support WLAN module detection automatically from now on.
Modifications in V 3.40(ADQ.0)C0 | 05/12/2006
Change to FCS version.
Modifications in V 3.40(ADQ.0)b11 | 05/10/2006
None.
Modifications in V 3.40(ADQ.0)b10 | 05/08/2006
[ENHANCEMENT]
Enlarge the FTP_BUFFER_SIZE from 0x320000 to 0x3D0000.
Modifications in V 3.40(ADQ.0)b9 | 04/26/2006
[ENHANCEMENT]
Support WLAN LED on/off check mechanism on HTP test. Support WLAN power switch when power cycle fail. Support Outbound Proxy in Web GUI.
Modifications in V 3.40(ADQ.0)b8 | 04/24/2006
[ENHANCEMENT]
Support ADM6996I AD version. Support full infomations in “sys atsh” CLI commands Support embedded Web GUI Help
Modifications in V 3.40(ADQ.0)b7 | 04/03/2006
[ENHANCEMENT]
Support modem code TI AR7 06.00.04.00.
Modifications in V 3.40(ADQ.0)b5 | 03/24/2006
340adq4c0
6/36
ZyXEL Confidential
[ENHANCEMENT]
Support LIFELINE_AUTODETECT. Support TI 1350 and APDK 6.3.0.23
Modifications in V 3.40(ADQ.0)b4 | 02/24/2006
[ENHANCEMENT]
Support TI 1350 and APDK 6.3.0.18 Support modem code TI AR7 06.00.02.00 Suuport MultiBoot Client version 2.3
Modifications in V 3.40(ADQ.0)b3 | 01/25/2006
2. [ENHANCEMENT]
Support CONE NAT Support TI 1350 and APDK 6.2.0.25 Support Web NewGUI. Enhance "Triple Play" feature
1. Support Multi ports to Multi PVCs mapping
2. Support WLAN port mapping
3. Support IGMP Snooping Integrated DNS Support Time Zone by City Support throughput enhancement Support OTIST(press 1s on reset button to turn on or turn off the WLAN; 5s for OTIST; 10s to reset back to factory default)
Support VoIP Phase 2 call feautre.
Modifications in V 3.40(ADQ.0)b2 | 12/19/2005
none
Modifications in V 3.40(ADQ.0)b1 | 12/16/2005
1. Create this project for OBM version.
340adq4c0
7/36
ZyXEL Confidential
Annex A CI Command List
Command Class List Table
System Related Command Exit Command Ethernet Related Command WAN Related Command WLAN_Related_Command IP Related Command IPSec Related Command PPP Related Command Bridge Related Command Radius Related Command 8021x Related Command Firewall Related Command Configuration Related Command SMT Related Command Voice Related Command
System Related Command
Command Description sys adjtime retrive date and time from Internet cbuf display [a|f|u] display cbuf a: all f: free u: used cnt cbuf static display display cbuf static clear clear cbuf static baud <1..5> change console speed callhist display display call history remove <index> remove entry from call history clear clear the counters in GUI status menu countrycode [countrycode] set country code date [year month date] set/display date domainname display domain name edit <filename> edit a text file enhanced
errctl [level] set the error control level
event display display tag flags information trace display system event information display display trace event clear <num> clear trace event extraphnum maintain extra phone numbers for outcalls add <set 1-3> <1st phone num> [2nd phone
num] display display extra phone numbers node <num>
remove <set 1-3> remove extra phone numbers reset reset flag and mask feature display feature bit fid display display function id list firmware display ISDN firmware type hostname [hostname] display system hostname iface
return OK if commands are supported for PWC purposes
0:crash no save,not in debug mode (default) 1:crash no save,in debug mode 2:crash save,not in debug mode 3:crash save,in debug mode
add extra phone numbers
set all extend phone number to remote node <num>
Home
340adq4c0
8/36
ZyXEL Confidential
disp [#] display iface list isr [all|used|free] display interrupt service routine interrupt display interrupt status log category access [0:none/1:log] record the access control logs attack [0:none/1:log/2:alert/3:both] record and alert the firewall attack logs display display the category setting error [0:none/1:log/2:alert/3:both] record and alert the system error logs ipsec [0:none/1:log] record the access control logs
mten [0:none/1:log] record the system maintenance logs upnp [0:none/1:log] record upnp logs urlblocked [0:none/1:log/2:alert/3:both] record and alert the web blocked logs urlforward [0:none/1:log] record web forward logs clear clear log display display all logs errlog clear display log error disp clear log error online turn on/off error log online display load load the log setting buffer mail alertAddr [mail address] send alerts to this mail address display display mail setting logAddr [mail address] send logs to this mail address schedule display display mail schedule schedule hour [0-23] hour time to send the logs schedule minute [0-59] minute time to send the logs
schedule policy
mail schedule policy [0:full/1:hourly/2:daily/3:weekly/4:non e] schedule week
weekly time to send the logs [0:sun/1:mon/2:tue/3:wed/4:thu/5:fri/6: sat]
server [domainName/IP] mail server to send the logs subject [mail subject] mail subject save save the log setting buffer syslog active [0:no/1:yes] active to enable unix syslog display display syslog setting facility [Local ID(1-7)] log the messages to different files server [domainName/IP] syslog server to send the logs mbuf cnt disp display system mbuf count clear clear system mbuf count link link list system mbuf link pool <id> [type] list system mbuf pool status display system mbuf status disp <address> display mbuf status debug [on|off] memory <address> <length> display memory content
340adq4c0
9/36
ZyXEL Confidential
memwrite <address> <len> [data list ...] write some data to memory at <address> memwl <address> write long word to memory at <address> memrl <address> read long word at <address> memutil usage display memory allocate and heap status mqueue <address> <len> display memory queues mcell mid [f|u] display memory cells by given ID msecs [a|f|u] display memory sections mtstart <n-mcell> start memory test mtstop stop memory test mtalloc <size> [n-mcell] allocate memory for testing mtfree <start-idx> [end-idx] free the test memory model display server model name proc display display all process information stack [tag] display process's stack by a give TAG pstatus display process's status by a give TAG queue display [a|f|u] [start#] [end#]
display queue by given status and ran ge n u mbers
ndisp [qid] display a queue by a given number quit quit CI command mode reboot [code]
reboot system
code = 0 cold boot,
= 1 immediately boot
= 2 bootModule debug mode
reslog disp display resources trace clear clear resources trace stdio [second] change terminal timeout value time [hour [min [sec]]] display/set system time timer disp display timer cell trace [on|off] set/display timer information online start [tmValue] start a timer stop <ID> stop a timer trcdisp monitor packets trclog switch [on|off] set system trace log online [on|off] set on/off trace log online level [level] set trace level of trace log #:1-10 type <bitmap> set trace type of trace log disp display trace log clear clear trace call display call event encapmask [mask] set/display tracelog encapsulation mask trcpacket create <entry> <size> create packet trace buffer destroy packet trace related commands channel <name>
[none|incoming|outgoing|bothway]
<channel name>=enet0,sdsl00, fr0
set packet trace direction for a given channel
string enable smt trace log switch [on|off] turn on/off the packet trace disp display packet trace
340adq4c0
10/36
ZyXEL Confidential
udp send packet trace to other system switch [on|off] set tracepacket upd switch addr <addr> send trace packet to remote udp address port <port> set tracepacket udp port parse [[start_idx], end_idx] parse packet content brief display packet content briefly version display RAS code and driver version view <filename> view a text file wdog switch [on|off] set on/off wdog cnt [value] display watchdog counts value: 0-34463 romreset restore default romfile server access <telnet|ftp|web|icmp|snmp|dns>
set server access type <value>
load load server information disp display server information port <telnet|ftp|web|snmp> <port> set server port save save server information secureip <telnet|ftp|web|icmp|snmp|dns> <ip> set server secure ip addr spt dump dump spt raw data root dump spt root data rn dump spt remote node data user dump spt user data slot dump spt slot data save save spt data size display spt record size clear clear spt data cmgr trace disp <ch-name> show the connection trace of this channel clear <ch-name> clear the connection trace of this channel cnt <ch-name> show channel connection related counter socket display system socket information filter clear clear filter statistic counter disp display filter statistic counters sw [on|off] set filter status switch set <set> display filter rule
netbios disp display netbios filter status
config <0:LAN to WAN, 1:WAN to
config netbios filter LAN, 2:LAN to DMZ, 3:IPSec passthrough, 4:Trigger Dial> <on|off>
ddns debug <level> enable/disable ddns service display <iface name> display ddns information restart <iface name> restart ddns logout <iface name> logout ddns cpu display display CPU utilization
340adq4c0
11/36
ZyXEL Confidential
Exit Command
Home
Command Description
exit exit smt menu
Ethernet Related Command
Home
Command Description ether config display LAN configuration information driver cnt disp <name> display ether driver counters clear <name> clear ether driver counters iface <ch_name> <num> send driver iface ioctl <ch_name> Useless in this stage. mac <ch_name> <mac_addr> Set LAN Mac address reg <ch_name> display LAN hardware related registers rxmod <ch_name> <mode> set LAN receive mode.
mode: 1: turn off receiving 2: receive only packets of this interface 3: mode 2+ broadcast 5: mode 2 + multicast
6: all packets status <ch_name> see LAN status init <ch_name> initialize LAN version see ethernet device type pkttest disp packet <level> set ether test packet display level event <ch> [on|off] turn on/off ether test event display sap [ch_name] send sap packet arp <ch_name> <ip-addr> send arp packet to ip-addr mem <addr> <data> [type] write memory data in address test <ch_id> <test_id> [arg3] [arg4] do LAN test pncconfig <ch_name> do pnc config mac <src_ch> <dest_ch> <ipaddr> fake mac address
WAN Related Command
Home
Command Description wan adsl bert ADSL ber chandata ADSL channel data, line rate close Close ADSL line coding ADSL standard current ctrleint ADSL CTRLE response command defbitmap ADSL defect bitmap status dyinggasp Send ADSL dyinggasp fwav Test the ADSL F/W available ping fwdl Download modem code, but must reset first linedata near Show ADSL near end noise margin far Show ADSL far end noise margin
340adq4c0
12/36
ZyXEL Confidential
open Open ADSL line opencmd Open ADSL line with specific standard opmode Show the operational mode perfdata Show performance information,CRC,FEC, error
seconds.. rdata [start] [length] Read DSP CTRLE registers 512 bytes reset Reset ADSL modem, and must reload t he modem
code again selftest long ADSL long loop test short ADSL short loop test status ADSL status (ex: up, down or wait for init) version ADSL version information vendorid ADSL vendor informati on utopia Show ADSL utopia information cellcnt Show ADSL cell counter display shutdown Show the counter of rate adaptive mechanism
happening rateup Show real status that rate adaptive mechanism
happened rateadap [on|off] Turn on/off rate adaptive mechanism dumpcondition [on|off] Turn on/off online debug i nf o rmation of rate
adaptive mechanism sampletime [mins] Tune the sample time of rate adaptive mechanism noisegt [dB] if noise margin is 3db greater than before, and
rate is worse than before, then system will do “L1
shutdown RA3”, default is 3db noisemargin [dB] if noise margin is greater than this value, and rate
is worse than before, then system will do “L1
shutdown RA3”, default is 8db persisttime [time] when the adaptive condition is matched system
will continue to monitor the time period
“persisttime” before doing “L1 shutdown RA3”,
default is 30 seconds timeinterval [mins] when “L1 shutdown RA3” is done twice, and still
can’t reach the max rate which system recorded,
it will delay a time period that the period base
time is”timeinterval” before starting again. The
time-based default is 2 hrs defectcheck [on|off] Turn on/off detect table checking, default is on txgain [value] Set the CTRLE register (0xc3), the value is from
0xfa to 0x06 targetnoise [value] Set the CTRLE register (0xc4), the value is from
0xfa to 0x06 maxtonelimit [value] Set the CTRLE register (0xc5), the value is from
0xfa to 0x06 rxgain [value] Set the CTRLE register (0xc6), the value is from
0xfa to 0x06 txoutputpwr [value] Set the CTRLE register (0xc7), the value is from
0xfa to 0x06 rxoutputpwr [value] Set the CTRLE register (0xc8), the value is from
0xfa to 0x06 maxoutputpwr [value] Set the CTRLE register (0xc9), the value is from
340adq4c0
13/36
ZyXEL Confidential
0xfa to 0x06 errorsecond sendes Send current error second information
immediately dygasprecover dygasprecover level [value] By default is 100, after receiving 100 dying gasp
system will reboot dygasprecover active [on|off| Turn on/off this mechanism rsploss [1|0] Turn on means to response signal loss of CTRLE
immediately, default is off atm test [fix|rand|period|oam|loopback] Generate ATM traffic hwsar disp Display hwsar packets incoming/outgoing
information clear Clear hwsar packets information
WLAN Related Command
Home
Command Description Wlan active [on|off] [0|1] Turn on/off wireless lan association Show association list load Load WLAN configuration into buffer. Display Display WLAN configuration data. chid Configure channel ID essid Configure ESSID hiddenssid [on/off] Enable/Disable hidden SSID threshold rts <RTS threshold value> Set threshold rts value Fragment <Fragment threshold value> Set threshold f ragmentation value wep type <none|64|128|256> Set WEP key to 64, 128 or 256 bits. Key Set <set> <value> Set WEP key value per set Key Default <set> Set WEP default key set macfilter Enable Enable macfilter Disable Disable macfilter Action <allow|deny> When action match, allow or deny this mac Set <Set#> <MAC Address> Set mac address by set Clear Clear all WLAN configuration data. Save Save WLAN configuration working buffer to
Rom file. filter [incoming |
<generic>[set#1][set#2][set#3][set#4] To set generic filter for wireless channel
outgoing]
IP Related Command
Home
Command Description ip address [addr] display host ip address loopbackaddr <IP1> [IP2] Set loopback address. alias <iface> alias iface aliasdis <0|1> disable alias arp
340adq4c0
14/36
ZyXEL Confidential
status <iface> display ip arp status add <hostid> ether <ether addr> add arp information resolve <hostid> resolve ip-addr drop <hostid> [hardware] drop arp flush flush arp table publish add proxy arp dhcp <iface> client release release DHCP client IP renew renew DHCP client IP mode <server|relay|none|client> set dhcp mode relay server <serverIP> set dicp relay server ip-addr reset reset dhcp table server probecount <num> set dhcp probe count
dnsserver <IP1> [IP2] [IP3]
set dns server ip-addr winsserver <winsIP1> [<winsIP2>] set wins server ip-addr gateway <gatewayIP> set gateway hostname <hostname> set hostname initialize
fills in DHCP parameters and initializes (for
PWC purposes) leasetime <period> set dhcp leasetime netmask <netmask> set dhcp netmask pool <startIP> <numIP> set dhcp ip pool renewaltime <period> set dhcp renew time rebindtime <period> set dhcp rebind time reset reset dhcp table server <serverIP> set dhcp server ip for relay dnsorder [router|isp] set dh cp dns order status [option] show dhcp status static delete <num>|all delete static dhcp mac table display display static dhcp mac table update <num> <mac> <ip> update static dhcp mac table dns query address <ipaddr> [timeout] resolve ip-addr to name debug <num> enable dns debug value name <hostname> [timeout] resolve name to ip-addr status display dns query status table display dns query table server <primary> [secondary] [third] set dns server stats clear clear dns statistics disp display dns statistics table display dns table httpd debug [on|off] set http debug flag icmp echo [on|off] set icmp echo response flag data <option> select general data type status display icmp statistic counter trace [on|off] turn on/off trace for debugging
340adq4c0
15/36
ZyXEL Confidential
discovery <iface> [on|off] set icmp router discovery flag ifconfig [iface] [ipaddr] [broadcast <addr>
configure network interface
|mtu <value>|dynamic] ifdrop <iface> chaek if iface is available. ping <hostid> ping remote host pong <hostid> [<size> <time-interval>] pong remote host route status [if] display routing table add <dest_addr|default>[/<bits>]
add route
<gateway> [<metric>]
addiface <dest_addr|default>[/<bits>]
add an entry to the routing table to iface
<gateway> [<metric>]
addprivate <dest_addr|default>[/<bits>]
add private route
<gateway> [<metric>] drop <host addr> [/<bits>] drop a route flush flush route table lookup <addr> find a route to the destination errcnt disp display routing statistic counters clear clear routing statistic counters status display ip statistic coun ters adjTcp <iface> [<mss>] adjust the TCP mss of iface udp status display udp status rip accept <gateway> drop an entry from the RIP refuse list activate enable rip merge [on|off] set RIP merge flag refuse <gateway> add an entry to the rip refuse list request <addr> [port] send rip request to some address and port reverse [on|off] RIP Poisoned Reverse status display rip statistic counters trace enable debug rip trace mode <iface> in [mode] set rip in mode <iface> out [mode] set rip out mode dialin_user [show|in|out|both|none] show dialin user rip direction tcp ceiling [value] TCP maximum round trip time floor [value] TCP minimum rtt irtt [value] TCP default init rtt kick <tcb> kick tcb limit [value] set tcp output window limit max-incomplete [number] Set the maximum number of TCP incomplete
connection. mss [value] TCP input MSS reset <tcb> reset tcb rtt <tcb> <value> set round trip time for tcb status [tcb] [<interval>] display TCP statistic counters syndata [on|off] TCP syndata piggyback trace [on|off] turn on/off trace for debugging window [tcb] TCP input window size samenet <iface1> [<iface2>] display the ifaces that in the same net uninet <iface> set the iface to uninet
340adq4c0
16/36
ZyXEL Confidential
tftp support support stats stats xparent join <iface1> [<iface2>] join iface2 to iface1 group break <iface> break iface to leave ipxparent group antiprobe <0|1> 1:yes 0:no set ip anti-probe flag igmp debug [level] set igmp debug level forwardall [on|off] turn on/off igmp forward to all interfaces flag querier [on|off] turn on/off igmp stop query flag iface <iface> grouptm <timeout> set igmp group timeout <iface> interval <interval> set igmp query interval <iface> join <group> join a group on iface <iface> leave <group> leave a group on iface <iface> query send query on iface <iface> rsptime [time] set igmp response time <iface> start turn on of igmp on iface <iface> stop turn off of igmp on iface <iface> ttl <threshold> set ttl threshold <iface> v1compat [on|off] turn on/off v1compat on iface robustness <num> set igmp robustness variable status dump igmp status pr clear clear ip pr table counter information disp dump ip pr table counter information switch turn on/off ip pr table counter flag nat timeout gre [timeout] set nat gre timeout value iamt [timeout] set nat iamt timeout value generic [timeout] set nat generic timeout value reset [timeout] set nat reset timeo ut value tcp [timeout] set nat tcp timeout value tcpother [timeout] set nat tcp other timeout value update create nat system information from spSysParam iamt display nat iamt information iface <iface> show nat status of an interface lookup <rule set> display nat lookup rule new-lookup <rule set> display new nat lookup rule loopback [on|off] turn on/off nat loopback flag reset <iface> reset nat table of an iface server disp display nat server table load <set id> load nat server information from ROM save save nat server information to ROM clear <set id> clear nat server information edit active <yes|no> set nat server edit active flag edit svrport <start port> [end port] set nat server server port edit intport <start port> [end port] set nat server forward port edit remotehost <start ip> [end ip] set nat server remote host ip edit leasetime [time] set nat server lease time edit rulename [name] set nat server rule name
340adq4c0
17/36
ZyXEL Confidential
edit forwardip [ip] set nat server server ip edit protocol [protocol id] set nat server protocol service irc [on|off] turn on/off irc flag resetport reset all nat server table entries incikeport [on|off] turn on/off increase ike port flag
IPSec Related Command
Home
Command Description ipsec debug <1|0> turn on|off trace for IPsec debug information route lan <on|off> After a packet is IPSec processed and will be sent
to LAN side, this switch is to control if this
packet can be applied IPSec again. Remark: Command available since 3.50(WA.3) wan <on|off> After a packet is IPSec processed and will be sent
to WAN side, this switch is to control if this
packet can be applied IPSec again. Remark: Command available since 3.50(WA.3) show_runtime sa display runtime phase 1 and phase 2 SA
information spd When a dynamic rule accepts a request and a
tunnel is established, a runtime SPD is created
according to peer local IP address. This
command is to show these runtime SPD. switch <on|off> As long as there exists one active IPSec rule, all
packets will run into IPSec process to check SPD.
This switch is to control if a packet should do
this. If it is turned on, even there exists active
IPSec rules, packets will not run IPSec process. timer chk_my_ip <1~3600> - Adjust timer to check if WAN IP in menu is
changed
- Interval is in seconds
- Default is 10 seconds
- 0 is not a valid value chk_conn. <0~255> - Adjust auto-timer to check if any IPsec
connection has no traffic for certain period. If
yes, system will disconnect it.
- Interval is in minutes
- Default is 2 minuets
- 0 means never timeout update_peer <0~255> - Adjust auto-timer to update IPSec rules which
use domain name as the secure gateway IP.
- Interval is in minutes
- Default is 30 minutes
- 0 means never update Remark: Command available since 3.50(WA.3) updatePeerIp Force system to update IPSec rules which use
domain name as the secure gateway IP right
away. Remark: Command available since 3.50(WA.3) dial <rule #> Initiate IPSec rule <#> from ZyWALL box Remark: Command available since 3.50(WA.3)
340adq4c0
18/36
ZyXEL Confidential
display <rule #> Display IPSec rule # config netbios active <on|off> Set netbios active flag group <group index1, group index2…> Set netbios group name <string> Set rule name active <Yes | No> Set active or not keeyAlive <Yes| No> Set keep alive or not lcIdType <0:IP | 1:DNS | 2:Email> Set local ID type lcIdContent <string> Set local ID content myIpAddr <IP address> Set my IP address peerIdType <0:IP | 1:DNS | 2:Email> Set peer ID type peerIdContent <string> Set peer ID content secureGwAddr <IP address | Domain name> Set secure gateway address or domain name protocol <1:ICMP | 6:TCP | 17:UDP> Set protocol lcAddrType <0:single | 1:range | 2:subnet> Set local address type lcAddrStart <IP> Set local start address lcAddrEndMask <IP> Set local end address or mask
lcPortStart <port> Set local start port lcPortEnd <port> Set local end port rmAddrType <0:single | 1:range | 2:subnet> Set remote address type rmAddrStart <IP> Set remote start address rmAddrEndMa
<IP> Set remote end address or mask
sk rmPortStart <port> Set remote start port rmPortEnd <port> Set remote end port antiReplay <Yes | No> Set anitreplay or not keyManage <0:IKE | 1:Manual> Set key manage ike negotiationMode <0:Main |
Set negotiation mode in phase 1 in IKE
1:Aggressive> preShareKey <string> Set pre shared key in phase 1 in IKE p1EncryAlgo <0:DES | 1:3DES> Set encryption algorithm in phase 1 in IKE p1AuthAlgo <0:MD5 | 1:SHA1> Set authentication algorithm in phase 1 in IKE p1SaLifeTime <seconds> Set sa life time in phase 1 in IKE p1KeyGroup <0:DH1 | 1:DH2> Set key group in phase 1 in IKE activeProtocol <0:AH | 1:ESP> Set active pro tocol in phase 2 in IKE p2EncryAlgo <0:Null | 1:DES |
Set encryption algorithm in phase 2 in IKE
2:3DES> p2AuthAlgo <0:MD5 | 1:SHA1> Set authentication algorithm in phase 2 in IKE p2SaLifeTime <seconds> Set sa life time in phase 2 in IKE encap <0:Tunnel | 1:Transport> set encapsulation in phase 2 in IKE pfs <0:None | 1:DH1 | 2:DH2> set pfs in phase 2 in IKE manual activeProtocol <0:AH | 1:ESP> Set active protocol in manual manual ah encap <0:Tunnel | 1:Transport> Set encapsulation in ah in manual spi <decimal> Set spi in ah in manual authAlgo <0:MD5 | 1:SHA1> Set authentication algorithm in ah in manual authKey <string> Set authentication key in ah in manual manual esp encap <0:Tunnel | 1:Transport> Set encapsulation in esp in manual spi <decimal> Set spi in esp in manual encryAlgo <0:Null | 1:DES | 2:3DES> Set encryption algorithm in esp in manual encryKey <string> Set encryption key in esp in manual authAlgo <0:MD5 | 1:SHA1> Set authentication algorith m in esp in manual authKey < string> Set au thentication key in esp in manual
340adq4c0
19/36
ZyXEL Confidential
PPP Related Command
Home
Command Description ppp autotrigger on <remoteNodeIndex> turn on packet trigger, default is enable off <remoteNodeIndex> turn off packet trigger status show autotrigger status retry <interval> adjust PPP retrial interval
Bridge Related Command
Home
Command Description
bridge mode <1/0> (enable/disable) turn on/off (1/0) LAN promiscious mode blt related to bridge local table disp <channel> display blt data reset <channel> reset blt data traffic display local LAN traffic table monitor [on|off] turn on/off traffice monotor. Default is off. time <sec> set blt re-init interval brt related to bridge route table disp [id] display brt data reset [id] reset brt data cnt related to bridge routing statistic table disp display bridge rout e c ou nte r clear clear bridge route counter stat related to bridge packet statistic table disp display bridge rout e packet co unt er clear clear bridge route packet counter disp display bridge source table
Radius Related Command
Home
Command Description radius auth show current radius authentication server
configuration
acco show current radius accounting server
configuration
8021x Related Command
Home
Command Description 8021x debug level [debug level] set ieee802.1x debug message level trace show all supplications in the supplication table user [username] show the specified user status in the supp licant
table
Configuration Related Command
Home
Command Description
config The parameters of config are listed below. edit firewall active Activate or deactivate the saved firewall settings
340adq4c0
20/36
ZyXEL Confidential
<yes|no> retrieve firewall Retrieve current saved firewall settings save firewall Save the current firewall settings display firewall Displays all the firewall settings set <set#> Display current entries of a set configuration;
including timeout values, nam e , defa ul t -permit,
and number of rules in the set. set <set#> rule <rule#> Display current entries of a rule in a set. attack Display all the attack alert settings in PNC e-mail Display all the e-mail settings in PNC ? Display all the available sub commands e-mail mail-server
Edit the mail server IP to send the alert
<mail server IP>
return-addr
Edit the mail address fo r returning an email alert
<e-mail address>
e-mail-to <e-mail
Edit the mail address to send the alert
address>
policy <full |
hourly |daily |
Edit email schedule when log is fu ll or per hour,
day, week.
weekly>
day <sunday |
monday | tuesday
Edit the day to send the log when the email policy
is set to Weekly
| wednesday | thursday | friday | saturday>
hour <0~23> Edit the hour to send the log when the email
policy is set to daily or weekly minute <0~59> Edit the minute to send to log when the email
policy is set to daily or weekly Subject <mail
Edit the email subject
subject>
attack send-alert
<yes|no>
Activate or deactivate the firewall Do S attacks
notification emails block <yes|no> Yes: Block the traffic when exceeds the
tcp-max-incomplete threshold No: Delete the oldest half-open session when
exceeds the tcp-max-incomplete threshold block-minute
<0~255>
minute-high
<0~255>
minute-low
<0~255>
max-incomplete-
high <0~255>
max-incomplete-
low <0~255>
tcp-max-incompl
Only valid when sets 'Block ' to yes. The unit is
minute
The threshold to start to delete the old half-opened
sessions to minute-low
The threshold to stop deleting the old half-opened
session
The threshold to start to delete the old half-opened
sessions to max-incomplete-low
The threshold to stop deleting the half-opened
session
The threshold to start executing the block field
ete <0~255>
set <set#> name <desired
Edit the name for a set
name>
default-permit
<forward|block>
icmp-timeout
<seconds>
Edit whether a packet is dropped or allowed when
it does not match the default set
Edit the timeout for an idle ICMP session before it
is terminated
340adq4c0
21/36
ZyXEL Confidential
udp-idle-timeout
<seconds>
connection-timeo
ut <seconds>
fin-wait-timeout
<seconds>
tcp-idle-timeout
<seconds>
Edit the timeout for an id le UDP session before it
is terminated
Edit the wait time for the SYN TCP sessions
before it is terminated
Edit the wait time for FIN in conc luding a TCP
session before it is terminated
Edit the timeout for an id le TCP session before it
is terminated pnc <yes|no> PNC is allowed when 'yes' is set even there is a
rule to block PNC log <yes|no> Switch on/off sending the log for matching the
default permit rule <rule#> permit
<forward|block>
Edit whether a packet is dropped or allowed when
it matches this rule active <yes|no> Edit whether a rule is enabled or not protocol <0~255> Edit the protocol number for a rule. 1=ICMP,
6=TCP, 17=UDP... log
<none|match|not-matc
Sending a log for a rule when the packet
none|matches|not match|both the rule
h|both>
alert <yes|no> Activate or deactivate the notification when a DoS
attack occurs or there is a violation of any alert
settings. In case of such instances, the function
will send an email to the SMTP destination
address and log an alert. srcaddr-single <ip
address>
srcaddr-subnet <ip
address> <subnet
Select and edit a source address of a packet which
complies to this rule
Select and edit a source address and subnet mask
if a packet which complies to this rule.
mask>
srcaddr-range <start ip
address> <end ip
Select and edit a source address range of a packet
which complies to this rule.
address>
destaddr-single <ip
address>
destaddr-subnet <ip
address> <subnet
Select and edit a destination address of a packet
which complies to this rule
Select and edit a destination address and subnet
mask if a packet which complies to this rule.
mask>
destaddr-range <start
ip address> <end ip
Select and edit a destination address range of a
packet which complies to this rule.
address>
tcp destport-single
<port#>
Select and edit the destination port of a packet
which comply to this rule. For non-consecutive
port numbers, the user may repeat this command
line to enter the multiple port numbers. tcp destport-range
<start port#> <end
Select and edit a destination port range of a packet
which comply to this rule.
port#>
udp destport-single
<port#>
Select and edit the destination port of a packet
which comply to this rule. For non-consecutive
port numbers, users may repeat this command line
to enter the multiple port numbers. udp destport-range
<start port#> <end
Select and edit a destination port range of a packet
which comply to this rule.
port#>
340adq4c0
22/36
ZyXEL Confidential
desport-custom
Type in the desired custom port name
<desired custom po rt
name> delete firewall e-mail Remove all email alert settings attack Reset all alert settings to defaults set <set#> Remove a specified set from the firewall
configuration
set <set#> rule <rule#> Remove a specified rule in a set from the firewall
configuration insert firewall e-mail Insert email alert settings attack Insert attack alert settings set <set#> Insert a specified rule set to the firewall
configuration set <set#> rule <rule#> Insert a specified rule in a set to the firewall
configuration cli Display the choices of command list.
Firewall Related Command
Home
Command Description sys firewall acl disp Display specific ACL set # rule #, or all ACLs. active <yes|no> Active firewall or deactivate firewall cnt disp Display firewall log type and count. clear Clear firewall log count. pktdump Dump the 64 bytes of dropped packet by firewall update Update firewall dynamicrule tcprst rst Set TCP reset sending on/off. rst113 Set TCP reset sending for port 113 on/off. display Display TCP reset sending setting. icmp dos smtp Set SMTP DoS defender on/off display Display SMTP DoS defender setting. ignore Set if firewall ignore DoS in lan/wan/dmz/wlan ignore triangle Set if firewall ignore triangle route in
lan/wan/dmz/wlan
SMT Related command
No Command Description Comment
sys bridge [on|off] Set system bridge on/off Menu 1 sys routeip [on|off] Set system IP routing on/off Menu 1 sys hostname [hostname] Set system name Menu 1
sys display
Display hostname, routin g/bridge mode informat i on in menu 1 Display Menu 1
Home
sys default Load All Default Settings Except LAN and DHCP.
340adq4c0
23/36
ZyXEL Confidential
sys save
Save all the parameters which will include menu1, menu 3.2 LAN, menu 4 or menu 11 WAN, menu 12 static route, menu 15 NAT server set, menu 21 filter sets, menu 22 SNMP, menu 24.11 remote management and 3.5 Wireless LAN
wan backup mechanism [dsl | icmp] Set wan backup mechanism to DSL link or ICMP Menu 2 wan backup addr [index] [IP addr] Set wan ip address <index> Menu 2 wan backup tolerance [number] Set keepalive fail tolerance Menu 2 wan backup recovery [interval(sec)] Set recovery interval Menu 2 wan backup timeout [number] Set ICMP timeout Menu 2 wan backup save Save wan backup related parameters Menu 2 wan backup display Display wan backup configurations Menu 2 wan tredir active [on|off] Set traffic redirect on/off Menu 2.1 wan tredir ip [IP addr] Set traffic redirect gateway IP address Menu 2.1 wan tredir metric [number] Set traffic redirect metric Menu 2.1
wan tredir save
Save traffic redirect related parameters ** Have to apply “wan backup save” command thereafter
Menu 2.1
wan tredir display Display traffic redirect configurations Menu 2.1
lan index [1|2|3]
1: Select main LAN Interface 2: Select IP Alias 1
Select a LAN interface to edit
Menu 3.2
3: Select IP Alias 2
lan active [on|off] Turn on or off on IP Alias Interface Menu 3.2.1
lan ipaddr [address] [subnet mask]
Set LAN IP address and subnet mask Example:
Menu 3.2
> lan ipaddr 192.168.1.1 255.255.255.0
lan rip [none|in|out|both] [rip1|rip2b|rip2m]
Set LAN IP RIP mode and RIP versio n, if you choose none i n the first parameter, the second parameter is also necessary
Menu 3.2
lan multicast [none|igmpv1|igmpv2] Set LAN IP multicast mode Menu 3.2
lan filter [incoming|outgoing] [tcpip|generic] [set#1] [set#2] [set#3] [set#4]
Set LAN filter to be incoming/outgoing or protocol /device and the filter set could be 1-12, 0 means empty Example:
Menu 3.1
Lan filter incoming tcpip 1 0 0 0 lan dhcp mode [server|relay|none] Set DHCP mode to be”server”, “relay”, “none” Menu 3.2 lan dhcp server dnsserver [pri dns] [sec dns] Set primary and secondary LAN DNS server Menu 3.2 lan dhcp server pool [start-address] [num] Set DHCP start address and pool size Menu 3.2 lan dhcp server gateway [IP address] Set DHCP gateway Menu 3.2 lan dhcp server netmask [subnet mask] Set DHCP subnet mask Menu 3.2 lan dhcp server leasetime [second] Set DHCP lease time Menu 3.2 lan dhcp server renewaltime [second] Set DHCP renew time Menu 3.2 lan dhcp server rebindtime [second] Set DHCP rebind time Menu 3.2 lan dhcp relay server [IP address] Set IP address of DHCP relay server Menu 3.2 lan display Display LAN or IP alias parameters Display Menu 3 lan clear Clear the Working Buffer lan save Save LAN related parameters
Set the node pointer to specific wan profile. If you want to set
Menu 11.1
WAN profile, please use this command first, system will use
wan node index [1-8]
the index number for pointing to specific PVC (remote node),
and for consequent commands reference, if index = 1 means
it’s ISP node wan node clear Clear the parameters of the temporary WAN profile Menu 11.1 wan node ispname [ISP name] Enable the name of wan node Menu 11.1
340adq4c0
24/36
ZyXEL Confidential
wan node enable Enable the wan profile Menu 11.1 wan node disable Disable the wan profi l e Menu 11.1 wan node encap [1483|pppoa|pppoe|enet] Set the wan protocol Menu 11.1 wan node mux [vc|llc] Set the wan multiplex Menu 11.1 wan node ppp authen [chap|pap|both] Set PPP authentication type Menu 11.1 wan node ppp username [name] Set PPP username Menu 11.1 wan node ppp password [password] Set PPP password Menu 11.1 wan node service [name] Set PPPoE service name Menu 11.1
wan node bridge [on|off]
wan node routeip [on|off]
Set the wan bridge mode
Set the wan IP routing mode
Menu 11.1
Menu 11.1
wan node callsch [set1#][set2#][set3#][set4#] Set call schedule set, set number 0 means empty Menu 11 .1 wan node nailedup [on|off] Set nailed up connection on/off Menu 11.1 wan node vpi [num] Set the wan vpi. Range : 0~255 Menu 11.6 wan node vci [num] Set the wan vci. Range : 32~65535 Menu 11.6 wan node qos[ubr|cbr] Set the wan QOS type to be UBR or CBR Menu 11.6 wan node pcr [num] Set the wan PCR value Menu 11.6 wan node scr [num] Set the wan SCR va lue Menu 11.6 wan node mbs [num] Set the wan MBS value Menu 11.6 wan node wanip [static|dynamic] [address] Set the wan IP address Menu 11.3 wan node remoteip [address] [subnet mask] Set the remote gateway IP address and subnet mask Menu 11.3 wan node nat [off | sua | full] [address
mapping #]
wan node rip [none|in|out|both]
[rip1|rip2b|rip2m]
Set type wan NAT mode to be off or SUA or Full feature
Set the wan RIP mode and RIP version
Menu 11.3
Menu 11.3
wan node multicast [none|igmpv1|igmpv2] Set the wan IP multicast mode Menu 11.3 wan node filter [incoming|outgoing]
[tcpip|generic] [set #1] [set #2] [set #3] [set #4]
Set WAN filter, incoming or outgoing can be specified, and
filter set can be 1-12, value 0 means empty
Menu 11.5
wan node save Save the related parameters of WAN node wan node display Display WAN profile configuration in buffer Display Menu 11
ip route addrom index [Rule #] Select a Static Route index 1-16 to edit Menu 12.1 ip route addrom name [Name] Set Rule Name Menu 12.1 ip route addrom active [on|off] Set Active or Inactive Flag Menu 12.1
ip route addrom set [dest address/ mask bits] [gateway] [metric]
Set IP static route
Example:
> ip ro addrom set 192.168.1.33/24 192.168.1.1 2
Menu 12.1
ip route addrom private [yes|no] Set Private Flag Menu 12.1 ip route addrom disp Display both working buffer and Editing Entry Menu 12.1 ip route addrom freememory Discard all changes Menu 12.1 ip route addrom save Save edited settings Menu 12.1 ip route addrom clear [Index #] Clear Static Route Index Menu 12.1
ip nat addrmap map [map#] [set name]
Select NAT address mapping set and set mapping set name,
but set name is optional
Example:
Menu 15.1
> ip nat addrmap map 1 myset
ip nat addrmap rule [rule#] [insert | edit] [type] [local start IP] [local end IP] [global start IP] [global end IP] [server set #]
Set NAT address mapping rule. If the “type” is not
“inside-server” then the “type” field will still need a dummy
value like “0”.
Type is 0 - 4 = one-to-one, many-to-one,
Menu 15.1
many-to-many-overload, many-to-many-non overload,
340adq4c0
25/36
ZyXEL Confidential
inside-server
Example:
> ip nat addrmap rule 1 edit 3 192.168.1.10 192.168.1.20
192.168.10.56 192.168.1.56 0 ip nat addrmap clear [map#] [rule#] Clear the selected rule of the set Menu 15.1 ip nat addrmap freememory Discard Changes Menu 15.1 ip nat addrmap disp Display nat set information Menu 15.1 ip nat addrmap save Save settings Menu 15.1 ip nat server load [set#] Load the server sets of NAT into buffer Menu 15.2
ip nat server disp [1]
“disp 1” means to display the NAT server set in buffer, if parameter “1” is omitted, then it will display all the server
Menu 15.2
sets
ip nat server save Save the NAT server set buffer into flash Menu 15.2
ip nat server clear [set#]
ip nat server edit [rule#] active
ip nat server edit [rule#] svrport <start port>
<end port>
ip nat server edit [rule#] remotehost <start IP>
<end IP> ip nat server edit [rule#] leasetime <seconds>
ip nat server edit [rule#] rulename <string>
ip nat server edit [rule#] forwardip <IP
address>
ip nat server edit [rule#] protocol
<TCP|UDP|ALL> sys filter set index [set#] [rule#]
Clear the server set [set#], must use “save” command to let it save into flash Activate the rule [rule#], rule number is 1 to 24, the number 25-36 is for UPNP application
Configure the port range from <start port > to <end port> Configure the IP address range of remote host (Leave it to be
default value if you don’t need this command) Configure the lease time (Leave it to be default value if you don’t want this command) Configure the name of the rule (Leave it to be default value if you don’t want this command)
Configure the LAN IP address to be forwarded Configure the protocol to be used TCP , UDP or ALL (it must
be capital) Set the index of filter set rule, you may apply this command first before you begin to configure the filter rules
Menu 15.2
Menu 15.2
Menu 15.2
Menu 15.2
Menu 15.2
Menu 15.2
Menu 15.2
Menu 15.2
Menu 21 filter sets
sys filter set name [set name] Set the name of filter set Menu 21 filter sets sys filter set type [tcpip | generic] Set the type of filter rule Menu 21 filter sets sys filter set enable Enable the rule Menu 21 filter sets sys filter set disable Disable the rule Menu 21 filter sets sys filter set protocol [protocol #] Set the protocol ID of the rule Menu 21 filter sets sys filter set sourceroute [yes|no] Set the sourceroute yes/no Menu 21 filter sets sys filter set destip [address] [subnet mask] Set the destination IP address and subnet mask of the rule Menu 21 filter sets sys filter set destport [port#] [compare type =
none|equal|notequal|less|greater]
Set the destination port and compare type (compare type could be 0(none)|1(equal)|2(not equal )|3(less)|4(greater) )
Menu 21 filter sets
sys filter set srcip [address] [subnet mask] Set the source IP address and subn e t mask Menu 21 filter sets sys filter set srcport [port#] [compare type =
none|equal|not equal|less|greater]
Set the source port and compare type (com pare ty pe coul d be 0(none)|1(equal)|2(not equal)|3(less)|4(greater) )
Menu 21 filter sets
sys filter set tcpEstab [yes|no] Set TCP establish option sys filter set more [yes|no] Set the more option to yes/no Menu 21 filter sets sys filter set log [type 0-3= none | match|
notmatch | both ]
sys filter set actmatch[type 0-2 = checknext |
forward | drop]
sys filter set actnomatch [type 0-2 =
checknext | forward | drop] sys filter set offset [#] Set offset for the generic rule
Set the log type (it could be 0-3 =none, match, not match, both)
Set the action for match
Set the action for not match
Menu 21 filter sets
Menu 21 filter sets
Menu 21 filter sets
Menu 21, it’s for generic filter
sys filter set length [#] Set the length for generic rule Menu 21, it’s fo r
340adq4c0
26/36
ZyXEL Confidential
generic filter
sys filter set mask [#] Set the mask for generic rule
sys filter set value [(depend on length in hex)] Set the value for generic rule
Menu 21, it’s for generic filter Menu 21, it’s for
generic filter sys filter set clear Clear the current filter set Menu 21 sys filter set save Save the filter set parameters
sys filter set display [set#][rule#]
Display Filter set information. W/o parameter, it will display buffer information.
sys filter set freememory Discard Changes
sys snmp disp Display SNMP parameters Menu 22 sys snmp get [community] Set the community string of get Menu 22 SNMP sys snmp set [community] Set the community string of set Menu 22 SNMP sys snmp trusthost [IP address] Set the IP address of trusted host Menu 22 SNMP sys snmp trap community [community] Set the community string of trap Menu 22 SNMP sys snmp trap destination [IP address] Set the destination address of trap Menu 22 SNMP sys snmp discard Discard changes sys snmp clear Clear Working Buffer sys snmp save Set the SNMP parameters Menu 22 SNMP
sys password [new password] Set system password [save immediately]
Menu 23 system
password
sys baud [1-5]
Index 12,3 will be 38400,19200, 9600, 57600, 115200 bps [save immediately]
Menu 24.2.2 console
speed
sys server load Load setting before editing
sys server access [ftp|telnet|web] [access type]
sys server port [ftp|telnet|web] [port] Set the server port number
sys server secureip[ftp|telnet|web] [address] Set the server security IP address
Set the server access type to be 0: ALL, 1: None, 2:LAN only, 3:WAN only
Menu 24.11 remote
management
Menu 24.11 remote
management
Menu 24.11 remote
management sys server disp [1] Display server settings, [1] means display buffer sys server save Save the embedded server (remote management) parameters
wlan load Load system parameters into working buffer
wlan disp Display the working buffer
wlan essid [name] Set the wireless ESSID
wlan hideessid [on|off]
Set to hide ESSID or not
wlan chid [#=1~13] Set channel ID 1-13
wlan threshold rts [value] Set the RTS threshold value
wlan threshold fragment [value] Set fragment threshold
wlan wep type [none|64|128] Set the wep type to be none, 64bit or 128bits
Menu 3.5 for
Wireless LAN
Menu 3.5 for
Wireless LAN
Menu 3.5 for wireless
LAN
Menu 3.5 for wireless
LAN
Menu 3.5 for wireless
LAN
Menu 3.5 for wireless
LAN
Menu 3.5 for wireless
LAN
Menu 3.5 for wireless
LAN wlan wep key set [key set#1-4] [key value] Set wep key value Menu 3.5 for wireless
340adq4c0
27/36
ZyXEL Confidential
D
LAN
wlan wep key default [key set # 1-4] Set default key set value
Menu 3.5 for wireless
LAN
wlan macfilter enable Enable mac filter
wlan macfilter disable Disable mac filter
wlan macfilter action [allow|deny] Set the action type of filter
wlan macfilter set [set# 1-12] [mac address] Set the mac address of filter
Menu 3.5.1 for
wireless LAN
Menu 3.5.1 for
wireless LAN
Menu 3.5.1 for
wireless LAN
Menu 3.5.1 for
wireless LAN wlan clear Clear Working Buffer wlan save Save wireless MAC filter parameters
Voice Related Command
Command Description
voice config rtp index <index> Select RTP index. sortingbuffer <index> <0:0ms|1:10ms|2:20ms>
rtcpinterval <index> <ms> Change the RTCP transmission
packetsize <index>g711<0:10ms|1:20ms|2:30ms>
g729<0:10ms|1:20ms|2:30ms> save <index> Save the configured value display <index> Display the configured value. dumpCfg Display working buffer value. free Free working buffer. pstn index <index> Select the PSTN index phonebook <index> <0~32 digits/blank> Signaling the phone number prefixcode <index> <1:enable | 0:disable> Disable or enable the prefix code active <index> <1:active | 0:in-active> Disable or enable the speed dial save <index> Save the configured value display Display the configured value. dumpCfg <index> Display working buffer value.
isable or enable receive sorting
buffer(default 10 ms)
interval(default 0) Change the transmit packetized period(default 20ms)
free Free working buffer. signal index <index> Select SIP index. active <index> <0:off|1:on> Active/in-active this setting. register <index> <auto|enter|exit> Change the registrar type registertimeout <index> <second> Setup registration timeout
value. (default 3600 sec)
registerresendt
ime
340adq4c0
<index> <second> Setup registration resend
timeout value.
28/36
ZyXEL Confidential
D
E
R
sessiontimerAct
<index> <0:off|1:on> Active/in-active sessiontimer
ive
sessiontimeout <index> <30-3600 second> Setup session timeout
value(default 300 sec)
minse <index> <20-1800 second> Setup minimum session timeout
value. retransmitT2 <index> <4|8|16|32sec> Not support yet serveraddress <index> <ip address> Signaling server address serverport <index> <1024-65535> Signaling server port (default
5060) registeraddress <index> <ip address> Signaling register address registerport <index> <1024-65535> Signaling register port(default
5060) userid <index> <0-96 chars> Signaling SIP user-id password <index> <0-96 chars> Signaling SIP password urltype <index> <sip|tel> SIP URL type port <index> <1024-65535> Signaling port phonenumber <index> <0-32 chars> Signaling phone number domain <index> <1-128 chars> Setup domain of SIP service dtmf <index>
Setup DTMF key type.
<rfc2833|pcm|sipinfo|rfc2833like>
pri_compression <index> <0:G711mu|8:G711A|18:G729> Change the primary compression
type
sec_compression <index> <0:G711mu|8:G711A|18:G729> Change the secondary compression
type
portrange <index> <start port> <end port>
RTP/RTCP port range setting
(40000~65535) transport <index> <udp|tcp> Setup SIP transport type. callerid <index> <disable|enable>
isable or enable the caller id
feature for VoIP. autoredialpstn <index> <disable|enable> Disable or enable the auto redial phoneselect <index><phone
port|0:All><0:No|1:Yes>
vlantag <index> <disable|enable>
Setup incoming call mapping to
phone port.
nable/disable VLAN Tag in VoIP
packet. tpid_vlantag <index> <TPID value (4 Byte)> Setup VLAN Tag - TPID. vid_vlantag <index> <VID value (3 Byte)> Setup VLAN Tag - VID. priority_vlantag <index> <TCI value (0-7)> Setup VLAN Tag - TCI.
diffservrtp <index> <0-7> Setup DiffServRtp for QoS. diffservsip <index> <0-7> Setup DiffServSip for QoS. mwiactive <index> <0:off|1:on> Disable or enable the voice
message mwitimeout <index> <minute> rfc3325 <index><1: privacy call using
Setup mwi expiration time
Disable or enable the rfc3325
FC3325, 0: privacy call using
draft-01>
prack <index> <0:off|1:on> Active/in-active prack message
340adq4c0
29/36
ZyXEL Confidential
fakesipactive <index> <0:off|1:on> Active/in-active FAKE WAN IP
service. fakesipservaddr <index> <ip address> Setup FAKE WAN IP service IP
Address fakesipservport <index> <port> Setup FAKE WAN IP service port outboundactive <index> <0:off|1:on> Active/in-active Outbound proxy
service. outboundaddr <index> <ip address> Setup Outbound proxy service. IP
Address outboundport <index> <port> Setup Outbound proxy service.
port outboundkaactive <index> <0:off|1:on> Active/in-active Outbound proxy
service keep alive outboundkaintvl <index> <second> Setup Outbound proxy service keep
alive Interval
stunactive <index> <0:off|1:on> Active/in-active STUN service. stunservaddr <index> <ip address> Setup STUN server IP Address. stunservport <index> <port> Setup STUN server port number. ringbackactive <index> <0:off|1:on> Disable or enable early media ringbacktone <index> <tone> Select early media tone musiconholdacti
<index> <0:off|1:on> Disable or enable music on hold
ve musiconholdtone <index> <tone> Select music on hold tone callfwd <index> <1-2> Select call forward table mixermode <index><0: Local / 1: Remote> Select 3-way conference
mixermode transafterconf <index><0:off|1:on> ON/OFF transfer conference rfc3263 <index> <0:off|1:on> Disable or enable the rfc3263 featuresenable <index> <0~1> ON/OFF feature bits Save <index> Save the configured value display <index> Display the configured value. dumpCfg Display working buffer value. Free Free working buffer. dsp index <index> Select DSP index. echocancellation <index> <enable|disable> Disable or enable the echo
cancellation jittersize <index> <0~90>ms Change the jitter buffer size for
DSP start <index> <loop|ground> Change the pots type. vad <index> <enable|disable> Disable or enable the VAD dialtype <index> <pstn|tone|pulse> Change the dialing type dialtonetype <index> <ntt:pdt> Change the dial tone type dialshortinterv
al
<index> <0~256 sec> Change the short dialing
interval . If the digital
interval is smaller than
dialshortinterval , the device
will call the phone number, No
340adq4c0
30/36
ZyXEL Confidential
,
g
matter whether you have pressing
finishing or not
diallonginterval <index> <0~256 sec> Change the long dialing
interval
time over diallonginterval
The device will send busy tone flashmaxinterval <index> <0~65535 msec> Setup flash key max interval, If
press flash key interval <
fxoflashmax
,device will ne
hang up. flashmininterval <index> <0~65535 msec> Setup flash key min interval. If
press flash key interval <
flashmininterval
,device will neglect the flash key. inputvolume <index> <-14~14> Change the input volume gain outputvolume <index> <-14~14> Change the output volume gain receivetonetype <index> <ir|sir> Change the receive tone type. sipselect <index><phone port|0:All><0:No|1:Yes> > Select SIP index and Disable or
enable the SIP callwaitingtime <index> <0~128 sec> Setup call waiting time cidtype <index><0:During Ring |1: Prior Ring>
cidpayload <index><0:FSK|1:DTMF> Setup DTMF payload type cidfskstartinte
rval
ciddtmfstartint
erval
cidringtimeout <index> <0~65535 msec> Setup call id ring time out.
featuresenable <index> <0~7> ON/OFF feature save <index> Save the configured value display <index> Display the configured value. dumpCfg Display working buffer value. free Free working buffer. phbook index <index> Select phone book index. active <index> <1:active|0:inactive> Active/in-active this setting. orignum <index> <0~32 digits> Setup phone number for this index
<index> <0~65535 msec> Setup FSK start interval.
<index> <0~65535 msec> Setup DTMF start interval.
Call ID display
This commands actually generate
extra 200ms delay.
ex: set to 0 ms -> 200ms
set to 200ms -> 400 ms
This commands actually generate
extra 200ms delay.
ex: set to 0 ms -> 200ms
set to 200ms -> 400 ms
This commands actually generate
extra 200ms delay.
ex: set to 0 ms -> 200ms
set to 200ms -> 400 ms
of phone book.
if the first digital
lect the flash key and
moment
340adq4c0
31/36
ZyXEL Confidential
p
forcesipuri <index> <1-128 chars> Setup force SIP URI. speednum <index> <0~32 digits> Setup speed dial number. name <index> <name> Setup the name for the
description. type <index> <0:Proxy|1:NonProxy> Select Proxy or Non-Proxy type. save <index> Please select the Phone Book
Save the configured value
index to configure: 1 ~ 10 display <index> Display the configured value. dumpCfg <index> Display working buffer value. free <index> <1:active|0:inactive> Free working buffer. common index <index> Select common index save <index> Save the configured value. ivrsyspermit <index><0:not permit ivrsys change,
Play ivr sys data
1:permit ivrsys change> specialFlag <index><special flag|h:for help> bit 0 --> 0: sent rtp after send
out 200OK / 1:sent rtp after receive ACK! bit 1 --> 0: res
ons 200 OK when recieve NOTIFY / 2:follow RFC3265!
ivrlanguage <index><0~2> Sutup ivr language pstnfallback <index><0: Disable PSTN Fallback /
1: Enable PSTN Fallback>
sipfallback <index><0: Disable SIP Fallback / 1:
Enable SIP Fallback>
dialmethod <index><0: European [<RR>+Number] /
Active/in-active PSTN Fallback Func. Active/in-active SIP Fallback Func. Select dialmethod
1: USA [<RR>]
removepound <index> <0:not removed|1:removed
On/OFF the removed pound
pound> countrycode <index><CountryCode|h:for help> Setup CountryCode webenable <index><0~1> Disable or enable the web display <index> Display the configured value. dumpCfg <index> Display working buffer value. autopro
index <index> Select autopro index. active <index> <0:off|1:on> Active/in-active autopro. servaddr <index> <ip address> Setup autopro server IP address timeout <index> <second> Setup timeout retry <index> <second> Setup retry time protocol <index> <0:TFTP|1:HTTP|2:HTTPS> Setup autopro protocol method <index> <0:Common|1:Bluewin> Select the autopro method save <index> Save the configured value.
display <index> Display the configured value.
dumpCfg <index> Display working buffer value.
340adq4c0
32/36
ZyXEL Confidential
g
g
yp
fxo index <index> Select fxo index
fxolongdial <index> <Long dial interval(ms)> Setting DSP first digital to
second digial interval time.
dtmfpausedur <index> <Short dial interval(ms)> Setting DSP send each digital
interval time.
dtmfdigitdur <index> <DTMF Duration(ms)> DSP sending DTMF duration time
throu
h FXO. Setup to 0 will be
500ms
fxoflashmin <index> <Flash Min Interval(ms)> Setup fxo flash key min interval.
If press flash key interval < fxoflashmin ,device will neglect the flash key.
fxoflashmax <index> <Flash Max Interval(ms)> Setup fxo flash key max interval,
If press flash key interval < fxoflashmax ,device will ne
lect the flash key and
hang up.
fxolifestable <index> <LifeLine Stable
Setup LifeLine stable interval
Interval(ms)> fxophselect <index> <phone
Select fxo mapping phone
port|0:All><0:No|1:Yes> save <index> Save the configured value.
display Display the configured value.
dumpCfg Display working buffer value.
forward
index <index> Select forward index
unconditional <index> <phone number> Setup unconditional call forward
number
busy <index> <phone number> Setup busy tone call forward
number
noanswer <index> <phone number> Setup noanswer call forward
number
noanstime <index> <second> Setup no answer time
table <index> <entry_id> <caller> <dest>
<t
e|0:unconditional 1:busy
Setup the rule table for call forward.
2:noanswer 3:block 4: accept> clear <index> <entry | uncond | busy |
Clear the call forward rule
noans | all > <entry_id for entry> save <index> Save the configured value.
display Display the configured value.
free Free working buffer.
340adq4c0
33/36
ZyXEL Confidential
version Show the VOIP version
fsm status <phone | ccm | convert | rtp | ua> Display the status of fsm.
convert <reset|disp > Display convert information or
reset convert.
debug <phone|ccm|sip|ua|tx|rtp|all> Turn on debug message.
sip
tl <0|1|2|3||7> SIP debug trace level
0:None 1: All 2: Tx 3:Rx 4: TXRx 5: State 6: Error 7: Warning
siginit Init SIP SIG task
sipinit Init SIP protocol stack
sipterm Delete SIP protocol stack
sigmak
type in phone num Make Call
ecall
sigbusy Response Busy Call Response Busy Call
sigrin
Response Ring Response Ring
gback sigreg <index> Register to SIP server sigunr
<index> Unregister Sip server.
eg regsta
<index> Show registers information.
tus sigok pick up a call pick up a call sigbye drop or cancel a call drop or cancel a call sipclo
Close the SIP
se userna
me proxy [0:off|1:on] Use SIP proxy contact <LAN Addr:0|Remote Node# WAN
Addr:1-2>
ackbra
nch rfc3262 <1: turn on RFC3262, 0: turn off
<on: the Ack bring branch ID, off:
the Ack didn't bring branch ID>
Setup bring branch ID.
Disable or enable the rfc3262
RFC3262>
rfc3325 <1: privacy call using RFC3325, 0:
Disable or enable the rfc3325
pirvacy call using draft-01>
keepal
<index> STUN debug command.
ive
340adq4c0
34/36
ZyXEL Confidential
checkw
<index> Display WAN IP/Port for SIP.
an change
<index> <RTP addr> <RTP port> RD debug command.
media siglis
<index> RD debug command.
tdump
dl Set up SIP trace level sigmwi <index> Send SUBSCRIBE packet sigunm
<index> Send UNSUBSCRIBE packet
wi discon
<index> or 'all' Disconnect call.
nect txmaxs
Setup the max tx number
ize rtp bye [port] [sessi
d]
connect port[0-3] destIp destPort srcPort
PT
add port[0-3] destIp destPort srcPort
PT
table Display all the current active
RTP session usage Display all the used port rxtime <msec> Setup RX time txtime <msec> Setup TX time dtmf digit# 1 = 1
digit# 2 = 2 digit# 3 = 3
statis
<index> Show the statistics
tics
linkti
<index> Show the RTP linktime
me autopro active Active/in-active autopro. startn
Start autopro now
ow termin
Terminate autopro.
ate itemdi
splay
Display all parameter setting
value.
size Adjust size of buffer
(autoPro.data) which store
incoming data from tftp server. . start Start autopro status Show current status of auto
provision. showda Show content of buffer
340adq4c0
35/36
ZyXEL Confidential
ta (autoPro.data) which store
incoming data from tftp server. debug <0:off|1:on> on/off debug messages of
auto-provision. httpde
<0:off|1:on> ON/OFF Autopro httpdebug mode
bug dialplan clear Clear dial plan in memory dial dial <phone number> Simulate dialing d igits for dial
plan parsing
load Load dial plan from flash and
overwrite dial plan in memory save Save dial plan to flash set set <all dial plans> Setup dial plan rule show Show dial plan in detail switch ON/OFF dial plan debug ON/OFF dialplan debug mode logTest RD debug command. tebasic For TE use only.
340adq4c0
36/36
Loading...