D-Link DSR-1000 Cli Reference Manual - Under Branch Net

Manual is about: Wireless N Services Router

Summary of DSR-1000

  • Page 1

    Unified services router cli reference guide release 1.04 building networks for people http://security.Dlink.Com small business gateway solution dsr-250 / 250n / 500 / 500n / 1000 / 1000n.

  • Page 2: Cli Reference Guide

    Cli reference guide unified services router d-link corporation copyright © 2011. Http://www.Dlink.Com.

  • Page 3

    Unified services router cli reference guide 1 cli reference guide dsr-250/250n/500/500n/1000/1000n unified services router version 1.04 copyright © 2011 copyright notice this publication, including all photographs, illustrations and software, is protected under international copyright laws, with all...

  • Page 4: Table Of Contents

    Unified services router cli reference guide 2 table of contents chapter 1. Introduction ............................................................................................................................. 7 1.1 accessing the cli .................................................................

  • Page 5

    Unified services router cli reference guide 3 8.17 net lan ipv6 pool delete ............................................................ 26 8.18 net mode configure ................................................................................................. 26 8.19 net port management configure ...

  • Page 6

    Unified services router cli reference guide 4 9.10 security firewall ipv4 configure/edit ....................................................................... 47 9.11 security firewall ipv4 delete .................................................................. 48 9.12 security firewall ipv4 dis...

  • Page 7

    Unified services router cli reference guide 5 11.1 dot11 access point configure .......................................................... 64 11.2 dot11 access point delete ................................................................ 64 11.3 dot11 access point disable ..............................

  • Page 8

    Unified services router cli reference guide 6.

  • Page 9: Chapter  1. Introduction

    Unified services router cli reference guide 7 chapter 1. Introduction this document describes the command line inter face (cli) for managing d-link's dsr- 1000n/1000/500n/500/250n/250 series of routers. The cli user requires advanced knowledge about the configuration of the system and should be used...

  • Page 10: On The Cli

    Unified services router cli reference guide 8 chapter 2. Basic commands available on the cli 2.1 context sensitive help [?] - display context sensitive help. This is either a list of possible command completions with summaries, or the full syntax of the current comm and. A subsequent repeat of this ...

  • Page 11: 2.5 Escape Sequences

    Unified services router cli reference guide 9 2.5 escape sequences !! - substitute the last command line. !N - substitute the nth command line (absolute as per 'history' command). !-n - substitute the command line entered n lines before (relative)..

  • Page 12: Categories:

    Unified services router cli reference guide 10 chapter 3. Command hierarchy in cli 3.1 cli commands can be divided into 4 categories: global commands show commands utility commands configuration commands 3.2 the router configuration is divided into 5 branches: net: network settings security: securit...

  • Page 13: Cli

    Unified services router cli reference guide 11 chapter 4. Global commands used in cli .Exit: exit this session .Help: display an overview of the cli syntax .Top: return to the default mode .Reboot: reboot the system. .History: display the current session's command line history. Number of commands in...

  • Page 14: Cli

    Unified services router cli reference guide 12 chapter 5. Show commands used in cli the show commands for all the above mentione d branches are outlined in this section. The command show net ? At the cli prompt would give the description of all the show commands in the branch net, which is as follow...

  • Page 15

    Unified services router cli reference guide 13 the command show security ? At the cli prompt would give the description of all the show commands in the branch security, which is as follows: sl no command name purpose 1 show security attack_checks setup display security checks configuration 2 show se...

  • Page 16

    Unified services router cli reference guide 14 sl no command name purpose 3 show dot11 profile setup [profile_name] [display_qos] display profile configuration the command show vpn ? At the cli prompt would give the description of all the show commands in the branch vpn, which is as follows: sl no c...

  • Page 17: Cli

    Unified services router cli reference guide 15 chapter 6. Utility commands used in cli the command util ? At the cli prompt would give the description of all the utility commands in the branch util, which is as follows: sl no command name purpose 1 util ping ping or trace an ip address. 2 util resto...

  • Page 18

    Unified services router cli reference guide 16 sl no command name description type and description between the destination ip address and this router ip address.

  • Page 19: In Cli

    Unified services router cli reference guide 17 chapter 7. Configure commands used in cli the configure commands for all the branches mentioned above are discussed in this section. The command net ? At the cli prompt would give the description of all the configuration commands in the branch net, whic...

  • Page 20

    Unified services router cli reference guide 18 sl no command name purpose 29 net bandwidth traffic_selector edit traffic selector configuration edit mode 30 net bandwidth traffic_selector delete traffic selector configuration delete mode 31 net upnp configure upnp configuration mode 32 net wan wan1 ...

  • Page 21

    Unified services router cli reference guide 19 sl no command name purpose 23 security ids configure ids configuration mode 24 security ip_or_mac_binding add ip/mac binding configuration mode 25 security ip_or_mac_binding delete ip/mac binding configuration mode. 26 security ip_or_mac_binding edit ip...

  • Page 22

    Unified services router cli reference guide 20 sl no command name purpose 13 system users idle_timeout admin idle timeout configuration 14 system users password users password configuration the command vpn ? At the cli prompt would give the description of all the configurat ion commands in the branc...

  • Page 23

    Unified services router cli reference guide 21 sl no command name purpose 30 vpn sslvpn users domains edit domains edit mode 31 vpn sslvpn users domains delete domains delete mode 32 vpn sslvpn users groups add groups add mode 33 vpn sslvpn users groups edit groups edit mode 34 vpn sslvpn users grou...

  • Page 24: Under Branch Net

    Unified services router cli reference guide 22 chapter 8. Configuration commands under branch net 8.1 net bandwidth profile enable sl no command name description type and description 1 enable enable or disable bandwidth profiles boolean (y/n) enable/ disable bandwidth profiles 8.2 net bandwidth prof...

  • Page 25

    Unified services router cli reference guide 23 sl no command name description type and description password. 5 wild_flag_enable enable / disable using wild cards boolean (y/n) wildcard flag 6 time_update_enable set timeperiod as 30 days boolean (y/n) update for every 30 days or not 7 cancel roll bac...

  • Page 26: 8.10 Net Lan Group Add

    Unified services router cli reference guide 24 8.8 net lan dhcp reserved_ip add sl no command name description type and description 1 mac_address reserved mac address used to add/edit mac address reserved mac address you want to add/edit 2 ip_address ip address to be reserved ip address ip address t...

  • Page 27: 8.13 Net Lan Host Delete

    Unified services router cli reference guide 25 sl no command name description type and description and exit current mode 5 save save lan host configuration changes 8.13 net lan host delete sl no command name description type and description 1 row_id row id of lan host to be deleted unsigned integer ...

  • Page 28: 8.18 Net Mode Configure

    Unified services router cli reference guide 26 sl no command name description type and description 13 save save lan configuration changes 8.16 net lan ipv6 pool configure sl no command name description type and description 1 start_address set dhcpv6 start ip address. Ip address abcd:abcd:abcd:abcd:a...

  • Page 29: 8.20 Net Radvd Configure

    Unified services router cli reference guide 27 8.19 net port management configure sl no command name description type and description 1 port_name port name lan/wan to manage dedicated port's port name, port1-lan/port2-wan 2 auto_negotiation_enable select this to let the gateway and network to determ...

  • Page 30

    Unified services router cli reference guide 28 sl no command name description type and description 8 cancel roll back radvd configuration changes 9 exit save radvd configuration changes and exit current mode 10 save save radvd configuration changes 8.21 net radvd pool add/edit sl no command name des...

  • Page 31

    Unified services router cli reference guide 29 sl no command name description type and description enable or disable ripng status 4 version rip version rip version type, disabled/rip1/rip2b/rip2m 5 first_key authentication_id first md5 authentication key string, alphanumeric md5 authentication key 6...

  • Page 32

    Unified services router cli reference guide 30 sl no command name description type and description 25 second_key valid_from second second in which md5 authentication key validity starts second in the format ss(00-59) 26 second_key valid_from year year in which md5 authentication key validity starts ...

  • Page 33

    Unified services router cli reference guide 31 sl no command name description type and description 5 interface set interface for which the route is applied string, valid strings (lan/wan) 6 metric set the metric for this route integer value, valid metric 2-15 7 private_flag defines whether the route...

  • Page 34: 8.29 Net Upnp Configure

    Unified services router cli reference guide 32 8.28 net routing static ipv6 delete sl no command name description type and description 1 name unique route name string, route name 8.29 net upnp configure sl no command name description type and description 1 advertisement period upnp advertisement per...

  • Page 35

    Unified services router cli reference guide 33 sl no command name description type and description 8 loadbalancing failover_method dns ipaddr_wan3 set wan3 dns ip valid ip address, valid wan3 dns ip n load balancing mode 9 loadbalancing failover_method ping ipaddr_wan1 set wan1 ping ip valid ip addr...

  • Page 36

    Unified services router cli reference guide 34 8.31 net wan configurable_port configure sl no command name description type and description 1 port_name select the configurable port type select from the wan2 or dmz 8.32 net wan wan1 ipv4 configure sl no command name description type and description 1...

  • Page 37

    Unified services router cli reference guide 35 sl no command name description type and description where each part is in the range 0- 255 15 l2tp username enter the username to log in string, alphanumeric username 16 l2tp split_tunnel set split tunnel mode boolean choice(y/n) 17 l2tp get_dns_from_is...

  • Page 38

    Unified services router cli reference guide 36 8.33 net wan wan2 ipv4 configure sl no command name description type and description 1 dhcpc mac_address this command allows you to set the mac address. Mac address, its format is xx:xx:xx:xx:xx:xx where x is a number from 0 to 9 (inclusive) or an alpha...

  • Page 39

    Unified services router cli reference guide 37 sl no command name description type and description 18 pptp username enter the username to log in string, alphanumeric username 19 pptp get_dns_from_isp enter yes to get dns dynamically from isp otherwise enter no and give valid static dns addresses boo...

  • Page 40

    Unified services router cli reference guide 38 sl no command name description type and description 4 authmethod setting threeg authentication methods select from - none/pap/chap 5 apn enter the apn provided by the isp string 6 reconnect_mode select always on: the connection is always on or on demand...

  • Page 41

    Unified services router cli reference guide 39 sl no command name description type and description 10 subnet_mask setting subnet mask if not obtaining from isp ip address subnet mask 11 service setting optional service name string type 12 cancel roll back wan configuration changes 13 exit save wan c...

  • Page 42

    Unified services router cli reference guide 40 8.37 net wan wan1-pppoeprofile edit prof_name sl no command name description type and description 1 username enter the username to log in string, alphanumeric username 2 password enter the password to log in string, alphanumeric password 3 authopt setti...

  • Page 43

    Unified services router cli reference guide 41 sl no command name description type and description isp otherwise enter no and give valid static dns addresses enter yes to get dns dynamically from isp otherwise enter no and give valid static dns addresses 6 primary_dns valid primary dns server ip add...

  • Page 44

    Unified services router cli reference guide 42 sl no command name description type and description 5 static prefix set prefix length integer, prefix length 6 static primary_dns set ipv6 primary dns address ip address, primary dns 7 static secondary_dns set ipv6 secondary dns address ip address, seco...

  • Page 45

    Unified services router cli reference guide 43 sl no command name description type and description 13 pppoe primary_dns valid primary dns server ip address ip address, primary dns 14 pppoe secondary_dns valid secondary dns server ip address ip address, secondary dns 15 cancel roll back wan configura...

  • Page 46: Mode

    Unified services router cli reference guide 44 8.45 routing protocol_binding edit sl no command name description type and description 1 row_id row id of the rule to be edited unsigned integer 8.46 routing protocol_binding disable sl no command name description type and description 1 row_id row id of...

  • Page 47: Under Branch Security

    Unified services router cli reference guide 45 chapter 9. Configuration commands under branch security 9.1 security attack_checks configure sl no command name description type and description 1 echostorm_flood_rate configure the echo storm flood rate integer configure echo storm flood rate (value be...

  • Page 48

    Unified services router cli reference guide 46 9.3 security blocked_keywords delete sl no command name description type and description 1 security blocked_keywords delete delete blocked keyword rule row id of the rule to be deleted 9.4 security blocked_keywords disable sl no command name description...

  • Page 49: Default_Outbound_Policy

    Unified services router cli reference guide 47 sl no command name description type and description 3 name name of the service for which a rule is to be added string, service name 4 protocol protocol type protocol type (tcp/udp/icmp/icmpv6) 5 quality_of_service type of qos qos. (normal-service/minimi...

  • Page 50

    Unified services router cli reference guide 48 sl no command name description type and description 5 dnat_address send to local server (dnat ip),specifies an ip address and port number of a machine on the local network which is host ip address aaa.Bbb.Ccc.Ddd where each part is in the range 0- 255 6...

  • Page 51

    Unified services router cli reference guide 49 sl no command name description type and description row id of the rule to be deleted 9.12 security firewall ipv4 disable sl no command name description type and description 1 security firewall ipv4 disable row id of the rule to be disabled integer, row ...

  • Page 52

    Unified services router cli reference guide 50 sl no command name description type and description changes. 9.16 security ip_or_mac_binding delete sl no command name description type and description 1 security ip_or_mac_binding delete row id of the rule to be deleted integer, row id of the rule to b...

  • Page 53

    Unified services router cli reference guide 51 9.19 security schedules add/edit sl no command name description type and description 1 days all select all days for schedule boolean choice (y/n) 2 days monday select monday for schedule boolean choice (y/n) 3 days tuesday select tuesday for schedule bo...

  • Page 54

    Unified services router cli reference guide 52 sl no command name description type and description configured 2 max_unidentified_sessions maximum number of unidentified sessions integer, max number of unidentified sessions 3 other_session_timeout configure other session timeout duration integer, oth...

  • Page 55

    Unified services router cli reference guide 53 sl no command name description type and description 3 cancel roll back mac filter configuration changes. 4 save save mac filter configuration changes. 5 exit save mac filter configuration changes and exit current mode. 9.25 security trusted_domain add/e...

  • Page 56

    Unified services router cli reference guide 54 sl no command name description type and description service for which a rule is to be added normal/custom 2 service service_custom name of the custom service for which a rule is to be added (custom name should already be added into custom service) strin...

  • Page 57: Under Branch System

    Unified services router cli reference guide 55 chapter 10. Configuration commands under branch system 10.1 system logging facility configure sl no command name description type and description 1 system logging facility configure facility type to configure. Facility types, kernel/system/local0- wirel...

  • Page 58

    Unified services router cli reference guide 56 10.3 system logging remote configure sl no command name description type and description 1 email_logs_enable set whether or not system emails scheduled email logs enabled or disabled. Boolean choice (y/n) 2 email_server set options for emailing of logs....

  • Page 59: 10.5 System Radius Delete

    Unified services router cli reference guide 57 10.4 system radius configure sl no command name description type and description 1 server set radius server ip address. Radius server ip address aaa.Bbb.Ccc.Ddd where each part is in the range 0-255 2 authentication_port set radius server port. Radius s...

  • Page 60

    Unified services router cli reference guide 58 sl no command name description type and description 8 exit save access management changes for https and exit current mode. 9 cancel roll back remote mgmt changes. 10.7 system snmp sys configure sl no command name description type and description 1 conta...

  • Page 61: 10.10

    Unified services router cli reference guide 59 sl no command name description type and description where each part is in the range 0- 255 10.10 system snmp user configure sl no command name description type and description 1 authentication_algo choose between md5 or sha authentication string md5/sha...

  • Page 62: 10.11

    Unified services router cli reference guide 60 sl no command name description type and description changes and exit current mode. 10.11 system time configure sl no command name description type and description 1 auto_daylight specify whether system automatically adjusts for daylight savings time boo...

  • Page 63: 10.12

    Unified services router cli reference guide 61 gmt+02:00 :: athens--istanbul--minsk—cairo gmt+03:00 :: baghdad--kuwait—moscow gmt+03:30 :: tehran gmt+04:00 :: abu-dhabi--muscat—baku gmt+04:30 :: kabul gmt+05:00 :: ekaterinburg--islamabad—karachi gmt+05:30 :: bombay--calcutta--madras—delhi gmt+06:00 ...

  • Page 64: 10.13

    Unified services router cli reference guide 62 sl no command name description type and description 13 save save traffic meter configuration changes. 14 exit save traffic meter configuration changes and exit current mode. 10.13 system group add sl no command name description type and description 1 gr...

  • Page 65: 10.17

    Unified services router cli reference guide 63 10.17 system users edit sl no command name description type and description 1 system users edit the rowid of the user to be edited integer 10.18 system users delete sl no command name description type and description 1 system users delete the rowid of t...

  • Page 66: Under Branch Dot11

    Unified services router cli reference guide 64 chapter 11. Configuration commands under branch dot11 11.1 dot11 access point configure sl no command name description type and description 1 ap_name unique name of the access point string, access point name 2 acl_policy_status policy, set the default a...

  • Page 67

    Unified services router cli reference guide 65 11.3 dot11 access point disable sl no command name description type and description 1 ap_name unique name of the access point string, access point name 11.4 dot11 access point enable sl no command name description type and description 1 ap_name unique n...

  • Page 68

    Unified services router cli reference guide 66 sl no command name description type and description group_key_refresh_interval interval options. Seconds). [10] 6 advanced pmksa_lifetime set advanced profile pmksa lifetime options. Pmksa lifetime (in seconds). [10] 7 broadcast_ssid enable or disable s...

  • Page 69

    Unified services router cli reference guide 67 sl no command name description type and description 6 preamble_mode set the 802.11b preamble type to be prepended to every frame 802.11b preamble type to be prepended to every frame (long/short) 7 rts_cts_protection enable/disable rts/cts handshake befo...

  • Page 70: Under Branch Vpn

    Unified services router cli reference guide 68 chapter 12. Configuration commands under branch vpn 12.1 vpn ipsec policy connect sl no command name description type and description 1 row_id rowid of vpn policy to connect and establish an inactive sa (connection). Unsigned integer, row_id of vpn poli...

  • Page 71

    Unified services router cli reference guide 69 sl no command name description type and description 5 general_select_ local_gateway in the event two wan ports are configured to connect to an isp, select the gateway that will be used as the local endpoint for this ipsec tunnel. Vpn local gateway (dedi...

  • Page 72

    Unified services router cli reference guide 70 sl no command name description type and description entire subnet, or any ip address that wants to connect. 19 general_remote_st art_address ip address from where the range needs to begin ip address aaa.Bbb.Ccc.Ddd where each part is in the range 0- 255...

  • Page 73

    Unified services router cli reference guide 71 sl no command name description type and description 31 auto_phase1_key_l ength blowfish and cast128 are variable length algorithms, and so the key length field is required when using either of these encryption types. For blowfish, the key length must be...

  • Page 74

    Unified services router cli reference guide 72 sl no command name description type and description authentication method mentioned in the ike sa parameters. 41 auto_phase1_authe ntication_type if userdata base is selected authentication done using local database.If radius option is selected authenti...

  • Page 75

    Unified services router cli reference guide 73 sl no command name description type and description lifetime 54 auto_phase2_encry ption_algorithm the algorithm used to encrypt the data vpn encryption algorithm (none/des/3des/aes-128/aes- 192/aes-256/aes-ccm/aes- gcm//twofish(128/192/256)/ blowfish/ca...

  • Page 76: 12.8 Vpn Sslvpn Client

    Unified services router cli reference guide 74 12.7 vpn ipsec dhcp configure sl no command name description type and description 1 start_address the starting ip address of the range. Ip address aaa.Bbb.Ccc.Ddd where each part is in the range 0- 255 2 end_address the end ip address of the range. Ip a...

  • Page 77: 12.10

    Unified services router cli reference guide 75 sl no command name description type and description 255 6 policy_masklength mask length number in range of 0 to 32 7 start_port begin port port number 8 end_port end port port number 9 service_type defined service virtual-passage, virtual- transport, al...

  • Page 78: 12.13

    Unified services router cli reference guide 76 12.13 vpn sslvpn portforwarding appconfig add sl no command name description type and description 1 serverip local server ip address ip address aaa.Bbb.Ccc.Ddd where each part is in the range 0- 255 2 port tcp port number port number 12.14 vpn sslvpn po...

  • Page 79: 12.18

    Unified services router cli reference guide 77 12.18 vpn sslvpn resource delete sl no command name description type and description 1 row_id row id of resource to be deleted unsigned integer, row number 12.19 vpn sslvpn resource configure add sl no command name description type and description 1 res...

  • Page 80: 12.22

    Unified services router cli reference guide 78 12.22 vpn sslvpn route delete sl no command name description type and description 1 row_id row id of route to be deleted unsigned integer, row number 12.23 vpn sslvpn users domains add sl no command name description type and description 1 domain_name do...

  • Page 81: 12.24

    Unified services router cli reference guide 79 sl no command name description type and description 15 active_directory_ domain active directory domain string of any character type with no spaces 17 second_active_dir ectory_domain secondary active directory domain string of any character type with no...

  • Page 82: 12.25

    Unified services router cli reference guide 80 sl no command name description type and description 14 second_ldap_base_ dn secondary ldap base domain name string of any character type with no spaces 15 active_directory_ domain active directory domain string of any character type with no spaces 17 se...

  • Page 83: 12.28

    Unified services router cli reference guide 81 sl no command name description type and description 5 mask_length source network mask length integer range 1 to 32 12.28 vpn sslvpn users users ip_policies delete sl no command name description type and description 1 row_id row id of policy table to be ...