CLI Reference Guide

264 | firewall Dell PowerConnect W-Series ArubaOS 6.2 | Reference Guide
Parameter Description Range Default
policies that prevent Layer3 traffic between users or
networks but this does not block Layer2 traffic. This
option can be used to prevent traffic, such as
Appletalk or IPX from being forwarded. If enabled,
traffic (all non-IP traffic) to untrusted port or tunnel is
also blocked.
deny-inter-user-traffic Denies downstream traffic between users in a
wireless network (untrusted users) by disallowing
layer2 and layer3 traffic. This parameter does not
depend on the deny-inter-user-bridging
parameter being enabled or disabled.
disabled
disable-ftp-server Disables the FTP server on the controller. Enabling
this option prevents FTP transfers.
Enabling this option could cause APs to not boot up.
You should not enable this option unless instructed
to do so by an Dell representative.
disabled
disable-stateful-h323-
processing
Disables stateful H.323 processing. disabled
disable-stateful-sccp-processing Disables SCCP processing. disabled
disable-stateful-sip-processing Disables monitoring of exchanges between a voice
over IP or voice over WLAN device and a SIP server.
This option should be enabled only when thee is no
VoIP or VoWLAN traffic on the network.
disabled
disable-stateful-ua-processing Disables stateful UA processing. disabled
disable-stateful-vocera-processing Disables stateful VOCERA processing. disabled
drop-ip-fragments When enabled, all IP fragments are dropped. You
should not enable this option unless instructed to do
so by an Dell representative.
disabled
enable-bridging
Enables bridging when the controller is in factory
default.
disabled
enable-per-packet-logging Enables logging of every packet if logging is enabled
for the corresponding session rule. Normally, one
event is logged per session. If you enable this option,
each packet in the session is logged. You should not
enable this option unless instructed to do so by an
Dell representative, as doing so may create
unnecessary overhead on the controller.
disabled
enforce-tcp-handshake Prevents data from passing between two clients until
the three-way TCP handshake has been performed.
This option should be disabled when you have
mobile clients on the network as enabling this option
will cause mobility to fail. You can enable this option
if there are no mobile clients on the network.
disabled
enforce-tcp-sequence Enforces the TCP sequence numbers for all packets. disabled