User's Manual
2-75
Catalyst 6500 Series Switch WebVPN Module Command Reference—Release 1.1
OL-7310-01
Chapter 2 Commands for the Catalyst 6500 Series Switch WebVPN Module
svc
rekey method {new-tunnel | ssl}
no rekey method
Specifies the rekey method. Entering the no form of this
command disables rekeying.
• new-tunnel—Terminates the existing tunnel and
requests a new tunnel.
• ssl—Initiates an SSL rehandshake.
If rekeying is
enabled, the default
method is ssl.
rekey {time interval}
no rekey time
Specifies when the VPN client rekeys the SSL tunnel. This
interval is time-based. Entering the no form of this
command disables the rekey-time interval.
interval—Valid values are from 0 to 43200 seconds.
21600 seconds
(6 hours).
split dns string Specifies the split-tunnel parameters.
string—Name or IP address of the DNS server.
split exclude {ip-address netmask |
local-lans}
Allows you to specify the traffic that is sent directly to an
external website without being tunneled through the
internal network; all other traffic is tunneled.
Note You can specify either the split include or the split
exclude command; you cannot specify both
keywords. You can specify up to 200 addresses for
either the split include or split exclude keyword by
entering the command multiple times.
• ip-address netmask—Address of traffic that is not
tunneled.
• local-lans—Specifies that the end user’s local LAN
traffic is not tunneled.
split include ip-address netmask Allows you to specify the traffic that is tunneled; all other
traffic is not tunneled through the internal network.
Note You can specify either the split include or the split
exclude command; you cannot specify both
keywords. You can specify up to 200 addresses for
either the split include or split exclude keyword by
entering the command multiple times.
ip-address netmask—Address of traffic that is tunneled.
wins-server {primary | secondary}
ip-address
Specifies the primary or secondary WINS server.
Table 2-5 Tunnel-Mode Configuration Commands (continued)
Command Purpose and Guidelines Default