For feedback and comments:
documentation.feedback@alcatel-lucent.com

Table of Contents Previous Next PDF


NAT Command Reference
Command Hierarchies
 
 
ISA Configuration Commands
config
nat-group nat-group-id [create]
description description-string
[no] mda mda-id
radius-accounting-policy nat-accounting-policy
redundancy {active-active|active-standby}
reserved num-sessions
watermarks high percentage low percentage
 
NAT Service Configuration Commands
configure
location remote-url
reserved num-ports
watermarks high percentage low percentage
nat-policy nat-policy-name [create]
no nat-policy nat-policy-name
[no] ftp
[no] pptp
[no] rtsp
[no] sip
block-limit [1..40]
description description-string
filtering filtering-mode
ipfix-export-policy [32 chars max]
pool nat-pool-name service-name service-name
pool nat-pool-name router router-instance
reserved num-ports
watermarks high percentage-high low percentage-low
[no] fc fc-name
max num-sessions
reserved num-sessions
watermarks high percentage-high low percentage-low
tcp-mss-adjust segment-size
icmp-query [min minutes] [sec<seconds]
sip min minutes] [sec<seconds]
subscriber-retention [hrs hours] [min minutes]
tcp-established [hrs hours] [min minutes] [sec seconds]
tcp-syn [hrs hours] [min minutes] [sec seconds]
tcp-time-wait [min minutes] [sec seconds]
tcp-transitory [hrs hours] [min minutes] [sec seconds]
udp [hrs hours] [min minutes] [sec seconds]
udp-dns [hrs hours] [min minutes] [sec seconds]
udp-initial [min minutes] [sec seconds]
pcp-server-policy name [create]
description description-string
lifetime minimum [60..86399] maximum [61..86400]
[no] get
[no] map
[no] next
version minimum [1..255] maximum [1..255]
 
IPFIX Commands
configure
ipfix-export-policy policy-name [create]
collector router router-instance ip ip-address [create]
no collector router router-instance ip ip-address
mtu [512..9212]
source-address ip-address
template-refresh-timeout [hrs hours] [min minutes] [sec seconds]
description description-string
 
UPnP Commands
configure
upnp-policy policy-name [create]
no upnp-policy policy-name
description description-string
mapping-limit [1..256]
 
configure
sub-profile subscriber-profile-name [create]
no sub-profile subscriber-profile-name
upnp-policy policy-name
 
ISA RADIUS Policy Commands
configure
isa-radius-policy name [create]
description description-string
nas-ip-address-origin {isa-ip|system-ip}
password password [hash|hash2]
access-algorithm {direct|round-robin|hash-based}
retry count
router router-instance
router service-name service-name
server server-index [create]
no server server-index
accounting [port udp-port]
authentication [port udp-port]
coa [port udp-port]
ip-address ip-address
secret secret-key | hash-key [hash|hash2]
source-address-range start-ip-address
timeout [sec seconds] [min minutes]
user-name-format user-name-format [mac-format mac-format]
 
VPRN Commands
config
vprn service-id customer cust-id create
[no] destination-prefix ip-prefix/length
prefix ip-prefix/length subscriber-type nat-sub-type nat-policy nat-policy-name [create]
prefix ip-prefix/length subscriber-type nat-sub-type
no prefix ip-prefix/length subscriber-type nat-sub-type
map start inside-ip-address end inside-ip-address to outside-ip-address
no map start inside-ip-address end inside-ip-address
[no] address ipv6-address
ip-fragmentation {disabled|fragment-ipv6|fragment-ipv6-unless-ipv4-df-set}
tunnel-mtu mtu-bytes
[no] address ip-address/mask
nat-policy nat-policy-name
[no] nat64
ip-fragmentation {disabled|fragment-ipv6|fragment-ipv6-unless-ipv4-df-set}
ipv6-mtu [1280..9212]
prefix ipv6-prefix/prefix-length
set-tos [0..255]
peer ip-address
peer6 ip-address
steering-route ip-prefix/length
mtu [512..9000]
pool nat-pool-name [nat-group nat-group-id type pool-type [applications applications ] create]
no pool nat-pool-name
address-range start-ip-address end-ip-address [create]
no address-range start-ip-address end-ip-address
description description-string
[no] drain
description description-string
mode {auto|napt|one-to-one}
port-reservation blocks num-blocks
port-reservation ports num-ports
export ip-prefix/length
follow router router-instance pool name
monitor ip-prefix/length
subscriber-limit [1..65535]
watermarks high percentage-high low percentage-low
 
 
NAT Subscriber Management Commands
configure
sub-profile subscriber-profile-name [create]
no sub-profile subscriber-profile-name
nat-policy policy-name
 
NAT Router Configuration Commands
config
[no] destination-prefix ip-prefix/length
prefix prefix/ip-prefix-length subscriber-type nat-sub-type nat-policy nat-policy-name [create]
prefix ip-prefix/ip-prefix-length subscriber-type nat-sub-type
no prefix ip-prefix/ip-prefix-length subscriber-type nat-sub-type
map start lsn-sub-address end lsn-sub-address to outside-ip-address
no map start lsn-sub-address end lsn-sub-address
[no] address ipv6-address
tunnel-mtu mtu-bytes
ip-fragmentation {disabled|fragment-ipv6|fragment-ipv6-unless-ipv4-df-set}
[no] address ip-address/mask
nat-policy nat-policy-name
|[no] nat64
ip-fragmentation {disabled|fragment-ipv6|fragment-ipv6-unless-ipv4-df-set}
ipv6-mtu [1280..9212]
prefix ipv6-prefix/prefix-length
set-tos [0..255]
peer ip-address
peer6 ip-address
steering-route ip-prefix/length
attribute [vendor vendor-id] attribute-type attribute-type
description description-string
radius-proxy-server router router-instance name server-name
mtu [512..9000]
pool nat-pool-name [nat-group nat-group-id type pool-type create]
no pool nat-pool-name
address-range start-ip-address end-ip-address [create]
no address-range start-ip-address end-ip-address
description description-string
[no] drain
description description-string
mode {auto | napt | one-to-one}
port-reservation blocks num-blocks
port-reservation ports num-ports
export ip-prefix/length
follow router router-instance pool name
monitor ip-prefix/length
subscriber-limit [1..65535]
watermarks high percentage-high low percentage-low
 
 
NAT Admin Configuration Commands
admin
 
 
Tools Commands
tools
histogram router router-instance pool pool-name bucket-size [1..65536] num-buckets [2..50]
 
Show Commands
 
show
nat-accounting-policy policy-name associations
nat-group nat-group-id [associations]
nat-group nat-group-id statistics mda mda-id
nat-group nat-group-id member [1..255]
nat-group nat-group-id member [1..255] reassembly-statistics
nat-group nat-group-id member [1..255] statistics
nat-group [nat-group-id] members
l2-aware-hosts [outside-router router-instance] [outside-ip outside-ip-address] [inside-ip-prefix ip-prefix/mask]
l2-aware-subscribers [nat-policy nat-policy-name] [nat-group nat-group-id] [member [1..255]] [outside-router router-instance] [outside-ip outside-ip-address]
l2-aware-subscribers subscriber sub-ident
nat-policy nat-policy-name associations
nat-policy nat-policy-name statistics
nat-policy nat-policy-name
upnp-policy policy-name
upnp-policy policy-name statistics
 
show
dual-stack-lite-subscribers subscriber dslite-sub-id
dual-stack-lite-subscribers [nat-policy nat-policy-name] [nat-group nat-group-id] [member [1..255]] [outside-router router-instance] [outside-ip outside-ip-address] [inside-ip-prefix ipv6-prefix]
l2-aware-blocks [outside-ip-prefix ip-prefix/length] [outside-port [1..65535]] [pool pool-name]
lsn-blocks [inside-router router-instance] [inside-ip ip-address] [outside-ip-prefix ip-prefix/length] [outside-port [1..65535]] [pool pool-name]
lsn-hosts host ip-address
lsn-hosts [outside-router router-instance] [outside-ip ip-address] [inside-ip-prefix ip-prefix/mask]
pool pool-name
 
Clear Commands
clear
upnp-mappings subscriber sub-ident-string protocol {tcp|udp} outside-port port-number
upnp-mappings subscriber sub-ident-string
nat-group nat-group-id member [1..255] l2-aware-subscribers
nat-group nat-group-id member [1..255] statistics
 
Tools Commands
 
tools
resources mda mda-id
sessions [nat-group nat-group-id] [mda mda-id] [protocol {gre|icmp| tcp|udp}] [inside-ip ip-address] [inside-router router-instance] [inside-port port-number] [outside-ip ipv4-address] [outside-port port-number] [foreign-ip ipv4-address] [foreign-port port-number] [dslite-address ipv6-address] [wlan-gw-ue ieee-address] [next-index index] [upnp]
l2-aware create subscriber sub-ident-string ip ip-address protocol {tcp|udp} [port port] lifetime lifetime [outside-ip ip-address] [outside-port port]
l2-aware delete subscriber sub-ident-string ip ip-address protocol {tcp|udp} port port
l2-aware modify subscriber sub-ident-string ip ip-address protocol {tcp|udp} port port lifetime lifetime
lsn create router router-instance [b4 ipv6-address] [aftr ipv6-address] ip ip-address protocol {tcp|udp} [port port] lifetime lifetime [outside-ip ipv4-address] [outside-port port]
lsn delete router router-instance [b4 ipv6-address] ip ip-address protocol {tcp|udp} port port
lsn modify router router-instance [b4 ipv6-address] ip ip-address protocol {tcp|udp} port port lifetime lifetime
 
Filter Commands
 
configure
ip-filter filter-id
ipv6-filter filter-id
entry entry-id
action nat [nat-policy-name nat-policy-name]