- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Re: Changing PBR rules using expert user
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Changing PBR rules using expert user
Hello guys!
There is a way to change PBR rules using the expert mode?
- Tags:
- pbr rule
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
While it may be possible to change PBR outside of clish, it is not supported.
You can call clish commands from expert mode.
But the question is: why do you want to do this?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Dameon,
Thank you for your reply.
I'm looking for it because I'm working with GRE tunnels on security gateways, monitoring the tunnels and performing traffic decisions based on the monitoring, so, using the PBR or interface up/down...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
As you're probably aware, GRE Tunnels aren't actually supported on Gaia currently.
See: Can users create a GRE tunnel on Gaia OS?
It may be possible to use standard Linux commands to configure policy routing.
However, routing on Gaia is controlled by routed and any changes made outside of clish/WebUI are not guaranteed to work or remain in effect for any period of time.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
It may be possible to use standard Linux commands to configure policy routing.
However, routing on Gaia is controlled by routed and any changes made outside of clish/WebUI are not guaranteed to work or remain in effect for any period of time.
It's exactly what I saw. Because of that I'm asking more details about.
Thank you Dameon.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
http://linux-ip.net/gl/ip-cref/
I would refer you to generic Linux documentation in this case, perhaps: ip-cref
But like I said, no guarantees it will work since this configuration is actually controlled through routed.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I found the sk106938 - How to run Clish commands from Expert mode and it is was I was looking for.
Using the clish I can run clish shell commands under expert mode and then get or change PBR table actions or rules.
Thanks.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Or you could do that
I thought the issue had more to do with the use of unsupported interface types (e.g. the GRE ones) thus you couldn't use the clish commands.
