HP VPN Firewall Appliances VPN Command Reference

164
Parameters
group-number: Specifies the number of an address pool, in the range of 1 to 32.
start-ipv4-address: Specifies the start IPv4 address in a pool.
end-ipv4-address: Specifies the end IPv4 address in a pool.
Usage guidelines
You cannot delete an address pool that is referenced by a v6tov4 policy. To delete such an address pool,
delete the policy first.
If start-ipv4-address equals end-ipv4-address, only one address is available in the address pool.
You cannot configure an AFT address pool and a NAT-PT address pool with the same number at the
same time.
Examples
# Create an AFT IPv4 address pool which contains addresses from 10.168.11.200 to 10.168.11. 210 .
<Sysname> system-view
[Sysname] aft address-group 1 10.168.11.200 10.168.11.210
Related commands
display aft address-group
display aft all
aft enable
Use aft enable to enable AFT on an interface.
Use undo aft enable to disable AFT on an interface.
Syntax
aft enable
undo aft enable
Default
AFT is disabled.
Views
Interface view
Default command level
2: System level
Usage guidelines
The aft enable command enables both AFT and NAT-PT. For more information about the NAT-PT
technology, see NAT and ALG Configuration Guide.
Avoid configuring both AFT policies and NAT-PT mapping polices on the same device.
Examples
# Enable AFT on an interface.
<Sysname> system-view
[Sysname] interface gigabitethernet 0/1