
Customizing a Firewall on a Router
117384-D Rev 00
4-5
For example, the following command disables the keepalive feature:
firewall#
idle-time-keepalive 0
firewall#
Setting the Keepalive Retransmit Timer
The keepalive retransmit timer specifies
the interval, in seconds, at which a router
retransmits unacknowledged keepalive messages to the management station.
The
default keepalive timer value is 5 seconds. You can use the BCC to specify a new
value.
Navigate to the firewall prompt (for example,
box; ip; firewall) and enter:
retry-timeout-keepalive <
interval>
interval
is the number of seconds, from 0 to 600. A value of 0 prevents the router
from transmitting keepalive messages. The TCP connection is disabled once the
keepalive retransmit timer expires.
For example, the following command sets the keepalive retransmit timer to 25
seconds:
firewall# retry-timeout-keepalive 25
firewall#
Setting the Keepalive Timer Retries
You can specify the number of times to retransmit an unacknowledged keepalive
message.
If after the number of retries the router does not receive an ACK from
the management station, the TCP connection is disabled. The default number of
retries is 10. You can use the BCC to specify a new value.
Navigate to the firewall prompt (for example,
box; ip; firewall) and enter:
retries-keepalive <
value>
value
is the number of retries, from 0 to 100. A value of 0 causes the router to
retransmit only one keepalive message.
Comentários a estes Manuais