Users Guide

Table Of Contents
Dell PowerConnect ArubaOS 5.0 | User Guide Roles and Policies | 291
Session Mirror Destination Destination (IP address or port) to which mirrored session packets are sent. This option
is used only for troubleshooting or debugging.
Packets can be mirrored in multiple ACLs, so only a single copy is mirrored if there is a
match within more than one ACL.
You can configure the following:
Ethertype to be mirrored with the Ethertype ACL mirror option.
IP flows to be mirrored with the session ACL mirror option.
MAC flows to be mirrored with the MAC ACL mirror option.
If you configure both an IP address and a port to receive mirrored packets, the IP
address takes precedence.
Default: N/A
Session Idle Timeout Set the time, in seconds, that a non-TCP session can be idle before it is removed from
the session table. Specify a value in the range 16-259 seconds. You should not set this
option unless instructed to do so by an Dell representative.
Default: 15 seconds
Disable FTP Server Disables the FTP server on the controller. Enabling this option prevents FTP transfers.
You should not enable this option unless instructed to do so by an Dell representative.
Default: Disabled (FTP server is enabled)
GRE Call ID Processing Creates a unique state for each PPTP tunnel. You should not enable this option unless
instructed to do so by an Dell representative.
Default: Disabled
Per-packet Logging Enables logging of every packet if logging is enabled for the corresponding session rule.
Normally, one event is logged per session. If you enable this option, each packet in the
session is logged. You should not enable this option unless instructed to do so by an Dell
representative, as doing so may create unnecessary overhead on the controller.
Default: Disabled (per-session logging is performed)
Broadcast-filter ARP Reduces the number of broadcast packets sent to VoIP clients, thereby improving the
battery life of voice handsets. You can enable this option for voice handsets in
conjunction with increasing the DTIM interval on
clients.
Default: Disabled
Session VOIP Timeout (sec) Sets the idle session timeout for sessions that are marked as voice sessions. If no voice
packet exchange occurs over a voice session for the specified time, the voice session is
removed. Range is 16 – 300 seconds.
Default: 300 seconds
Disable Stateful H.323 Processing Disables stateful H.323 processing.
Default: Enabled
Disable Stateful SCCP Processing Disables stateful SCCP processing.
Default: Disabled
Only allow local subnets in user table Adds only IP addresses, which belong to a local subnet, to the user-table.
Default: Disabled
Session mirror IPSEC Configures session mirroring of all frames that are processed by IPsec. Frames are sent
to IP address specified by the session-mirror-destination option.
NOTE: Use this option for debugging or troubleshooting only.
Default: Disabled
Enforce WMM Voice Priority Matches
Flow Content
If traffic to or from the user is inconsistent with the associated QoS policy for voice, the
traffic is reclassified to best effort and data path counters incremented.
Default: Disabled
Rate limit CP untrusted ucast traffic
(Mbps)
Specifies the untrusted unicast traffic rate limit. Range is 1-200 Mbps.
Default: 10 Mbps
Table 58 IPv4 Firewall Parameters (Continued)
Parameter Description