cisco asa 5505命令一览.doc_第1页
cisco asa 5505命令一览.doc_第2页
cisco asa 5505命令一览.doc_第3页
cisco asa 5505命令一览.doc_第4页
cisco asa 5505命令一览.doc_第5页
已阅读5页,还剩16页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

ciscoasa# ? aaa-server Specify a AAA server 指定一个AAA服务器:aaa配置 activation-key Modify activation-key 修改激活码 asdm Disconnect a specific ASDM session 自适应安全设备管理器(ASDM)。 blocks Set block diagnostic parameters 设置块诊断参数 capture Capture inbound and outbound packets on one or 捕获入站和出站的包 more interfaces cd Change current directory 改变当前的目录 clear Reset functions 复位功能 client-update Execute client updates on all or specific 客户端更新 tunnel-groups clock Manage the system clock 管理系统时钟 configure Configure using various methods 全局配置模式使用 copy Copy from one file to another 复制拷贝文件 cpu general CPU stats collection tools CPU状态收集工具 crashinfo Crash information 死机信息 crypto Execute crypto Commands 执行加密命令 debug Debugging functions (see also undebug) 调试功能配置 delete Delete a file 删除一个文件 dir List files on a filesystem 列出文件 disable Exit from privileged mode 退出特权模式 dynamic-access-policy-config Activates the DAP selection configuration file. 激活DAP选择配置文件。 eou EAPoUDP erase Erase a filesystem 删除一个文件 exit Exit from the EXEC 退出特权模式 export Copies file to the specified remote location 拷贝文件到指定的远程位置 failover Perform failover operation in Exec mode 进行故障转移操作在Exec方式 fips Execute FIPS tests 执行FIPS测试 format Format a filesystem fsck Filesystem check help Interactive help for commands 交互式帮助为命令 hw-module Show all module information 显示所有模块信息 import Copies file from the specified remote location and initiates certain WebVPN actions such as unpacking of this file into ASAs RAMFS, saving it into a predefined location on the flash, etc. kill Terminate a telnet session logging Configure flash file name to save logging buffer logout Exit from the EXEC memory Memory tools mkdir Create new directory more Display the contents of a file no Negate a command or set its defaults 否定一个命令或设置它的缺省 no Remove a command or set to its default packet-tracer trace packets in F1 data path 踪影小包在F1数据通路 perfmon Change or view performance monitoring options 改变或查看性能检测选项 ping Send echo messages ping测试 pwd Display current working directory quit Exit from the EXEC reload Halt and reload system rename Rename a file revert Removes an imported file from RAMFS and from flash and restore default settings (if applicable). rmdir Remove existing directory session Open a command session to another module. show Show running system information shun Manages the filtering of packets from undesired hosts 管理非法主机的数据包过滤 ssh Disconnect a specific SSH session terminal Turn on/off syslogging to this terminal test Test subsystems, memory, interfaces, and configurations 例如:Test a regular expression 测试一个正则表达式 traceroute Trace route to destination undebug Disable debugging functions (see also debug) user-alert Launches pop-up browser window with the configured message for all active clientless WebVPN sessions verify Verify a file vpn-sessiondb Configure the VPN Session Manager vpnclient Easy VPN Remote connect and disconnect webvpn-cache Remove cached object who Show active administration sessions on the system write Write running configuration to memory, network, or terminalciscoasa# conf tciscoasa(config)# ? aaa Enable, disable, or view user authentication, authorization and accounting aaa-server Configure a AAA server group or a AAA server access-group Bind an access-list to an interface to filter traffic access-list Configure an access control element alias Administer overlapping addresses with dual NAT arp Change or view ARP table, set ARP timeout value, view statistics asdm Configure Device Manager auth-prompt Customize authentication challenge, reject or acceptance prompt auto-update Configure Auto Update banner Configure login/session banners boot Set system boot parameters ca Certification authority checkheaps Configure checkheap verification intervals class-map Configure MPF Class Map clear Clear client-update Configure and change client update parameters clock Configure time-of-day clock command-alias Create command alias compression Configure global Compression parameters config-register Define the configuration register configure Configure using various methods console Serial console functions crashinfo Enable/Disable writing crashinfo to flash crypto Configure IPSec, ISAKMP, Certification authority ctl-file Configure a ctl-file instance ctl-provider Configure a CTL Provider instance ddns Configure dynamic DNS update method dhcp-client Configure parameters for DHCP client operation dhcpd Configure DHCP Server dhcprelay Configure DHCP Relay Agent dns Add DNS functionality to an interface dns-group Set the global DNS server group dns-guard Enforce one DNS response per query domain-name Change domain name dynamic-access-policy-record Dynamic Access Policy configuration commands dynamic-map Configure crypto dynamic map enable Configure password for the enable command end Exit from configure mode eou EAP over UDP (NAC Framework) Global Configuration Commands established Allow inbound connections based on established connections exit Exit from config mode failover Enable/disable failover feature filter Enable or disable URL, FTP, HTTPS, Java, and ActiveX filtering fips FIPS 140-2 compliance information firewall Switch to router/transparent mode fixup Add or delete inspection services fragment Configure the IP fragment database ftp Set FTP mode ftp-map Configure advanced options for FTP inspection global Configure global address pools or designate a PAT (Port Address Translated) address group-delimiter The delimiter for tunnel-group lookup. group-policy Configure or remove a group policy h225-map Configure advanced options for H225 inspection help Interactive help for commands hostname Change host name of the system http Configure http server and https related commands http-map This command has been deprecated. icmp Configure access rules for ICMP traffic imap4s Configure the imap4s service interface Select an interface to configure ip Configure IP addresses, address pools, IDS, etc ipsec Configure transform-set and IPSec SA lifetime ipv6 Global IPv6 configuration commands isakmp Configure ISAKMP key, peer, policy and other options l2tp Configure Global L2TP Parameters ldap Configure LDAP Mapping logging Configure logging levels, recipients and other options logout Logoff from config mode mac-list Create a mac-list to filter based on MAC address management-access Configure management access interface map Configure crypto map mgcp-map Configure advanced options for MGCP inspection monitor-interface Enable or disable failover monitoring on a specific interface mount Configure a system mount mroute Configure static multicast routes mtu Specify MTU(Maximum Transmission Unit) for an interface multicast-routing Enable IP multicast nac-policy Configure or remove a nac-policy name Associate a name with an IP address names Enable/Disable IP address to name mapping nat Associate a network with a pool of global IP addresses nat-control Enable/Disable NAT configuration requirement no Negate a command or set its defaults ntp Configure NTP object-group Create an object group for use in access-list, etc pager Control page length for pagination passwd Change Telnet console access password phone-proxy Configure a Phone proxy instance pim Configure Protocol Independent Multicast policy-map Configure MPF Parameter Map pop3s Configure the pop3s service prefix-list Configure prefix lists priority-queue Enter sub-command mode to set priority-queue attributes privilege Configure privilege levels for commands prompt Configure session prompt display quit Exit from config mode regex Define a regular expression remote-access Configure SNMP trap threshold for VPN remote-access sessions route Configure a static route for an interface route-map Create route-map or enter route-map configuration mode router Enable a routing process routing Configure interface specific unicast routing parameters same-security-traffic Enable same security level interfaces to communicate service Configure system services service-policy Configure MPF service policy setup Pre-configure the system sla IP Service Level Agreement smtp-server Configure default SMTP server address to be used for Email smtps Configure the smtps service snmp Configure the SNMP inspection snmp-map Configure an snmp-map, to control the operation of the SNMP inspection snmp-server Modify SNMP engine parameters ssh Configure SSH options ssl Configure SSL options static Map a higher security level host address to global address sunrpc-server Create SUNRPC services table sysopt Set system functional options tcp-map Configure advanced options for TCP inspection telnet Add telnet access to system console or set idle timeout terminal Set terminal line parameters tftp-server Configure default TFTP server address and directory threat-detection Show threat detection information time-range Define time range entries timeout Configure maximum idle times tls-proxy Configure a TLS proxy instance or the maximum sessions track Object tracking configuration commands tunnel-group Create and manage the database of connection specific records for IPSec connections tunnel-group-map Specify policy by which the tunnel-group name is derived from the content of a certificate. url-block Enable URL pending block buffer and long URL support url-cache Enable/Disable URL caching url-server Configure a URL filtering server username Configure user authentication local database virtual Configure address for authentication virtual servers vpdn Configure VPDN feature vpn-addr-assign Global settings for VPN IP address assignment policy vpn-sessiondb Configure the VPN Session Manager vpnclient Configure an Easy VPN connection vpnsetup Configure VPN Setup Commands wccp Web-Cache Coordination Protocol Commands webvpn Configure the WebVPN service zonelabs-integrity ZoneLabs integrity Firewall Server Configurationciscoasa(config)# int e 0/0ciscoasa(config-if)# ?Interface configuration commands: authentication authentication subcommands ddns Configure dynamic DNS default Set a command to its defaults delay Specify interface throughput delay description Interface specific description dhcp Configure parameters for DHCP client duplex Configure duplex operation exit Exit from interface configuration mode hello-interval Configures EIGRP-IPv4 hello interval help Interactive help for interface subcommands hold-time Configures EIGRP-IPv4 hold time igmp IGMP interface commands ip Configure ip addresses. ipv6 IPv6 interface subcommands mac-address Assign MAC address to interface management-only Dedicate an interface to management. Block thru traffic mfib Interface Specific MFIB Control multicast Configure multicast routing nameif Assign name to interface no Negate a command or set its defaults ospf Configure interface specific OSPF parameters pim PIM interface commands pppoe Configure parameters for PPPoE client rip Configure interface specific RIP parameters security-level Specify the security level of this interface after this keyword, Eg: 0, 100 etc. The relative security level between two interfaces determines the way the Adaptive Security Algorithm is applied. A lower

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论