ZyXEL Communications 3.1 User Manual

Page of 386
Chapter 14 ALG
ZyWALL (ZLD) CLI Reference Guide
128
14.2  ALG Commands 
The following table lists the 
alg
 commands. You must use the 
configure terminal
 command to 
enter the configuration mode before you can use these commands.    
Table 63   
alg Commands
COMMAND
DESCRIPTION
[no] alg sip [inactivity-
timeout | signal-port 
<1025..65535> | signal-
extra-port <1025..65535> | 
media-timeout <1..86400> | 
signal-timeout <1..86400> | 
transformation] 
Turns on or configures the ALG. 
Use inactivity-timeout to have the ZyWALL apply SIP media and 
signaling inactivity time out limits.
Use signal-port with a listening port number (1025 to 65535) if you are 
using SIP on a port other than UDP 5060. 
Use signal-extra-port with a listening port number (1025 to 65535) if 
you are also using SIP on an additional UDP port number, enter it here.
Use media-timeout and a number of seconds (1~86400) for how long to 
allow a voice session to remain idle (without voice traffic) before dropping 
it. 
Use signal-timeout and a number of seconds (1~86400) for how long to 
allow a SIP signaling session to remain idle (without SIP packets) before 
dropping it.
Use transformation to have the ZyWALL modify IP addresses and port 
numbers embedded in the SIP data payload. You do not need to use this if 
you have a SIP device or server that will modify IP addresses and port 
numbers embedded in the SIP data payload.
The no command turns off the SIP ALG or removes the settings that you 
specify.
[no] alg <h323 | ftp> 
[signal-port <1025..65535> | 
signal-extra-port 
<1025..65535> | 
transformation] 
Turns on or configures the H.323 or FTP ALG. 
Use signal-port with a listening port number (1025 to 65535) if you are 
using H.323 on a TCP port other than 1720 or FTP on a TCP port other 
than 21. 
Use signal-extra-port with a listening port number (1025 to 65535) if 
you are also using H.323 or FTP on an additional TCP port number, enter it 
here.
Use transformation to have the ZyWALL modify IP addresses and port 
numbers embedded in the H.323 or FTP data payload. You do not need to 
use this if you have an H.323 or FTP device or server that will modify IP 
addresses and port numbers embedded in the H.323 or FTP data payload.
The no command turns off the H.323 or FTP ALG or removes the settings 
that you specify.
[no] alg sip defaultport 
<1..65535>
Adds (or removes) a custom UDP port number for SIP traffic.
show alg <sip | h323 | ftp>
Displays the specified ALG’s configuration.