< Home

engine bypass

Function

The engine bypass command sets the IAE to work in bypass state.

The undo engine bypass command disables the bypass state for the IAE.

Format

engine bypass [ slot slot-id cpu cpu-id ]

engine bypass [ ignore-tcp-proxy ]

undo engine bypass [ slot slot-id cpu cpu-id ]

undo engine bypass [ ignore-tcp-proxy ]

Parameters

Parameter Description Value

slot slot-id

Specifies the slot ID of the SPU. Only the USG6635E/6655E, USG6680E and USG6712E/6716E support this parameter.

-

cpu cpu-id

Specifies the slot ID of the SPU. Only the USG6635E/6655E, USG6680E and USG6712E/6716E support this parameter.

-

ignore-tcp-proxy

Configure the IAE to ignore the TCP proxy when the IAE is in bypass state.

-

Views

System view

Default Level

2: Configuration level

Usage Guidelines

By default, the IAE bypass state is disabled. Traffic for which security policy-based detection is performed is sent to the IAE for content security detection, for example, antivirus, intrusion prevention, and URL filtering.

After the IAE is manually set to the bypass state, packets are not processed by the IAE, and content security detection and TCP proxy cannot be performed.

After the IAE is manually set to the bypass state and the ignore-tcp-proxy parameter is set, packets are not processed by the IAE but processed by the TCP proxy.

Example

# Configure the engine to work in bypass state.

<sysname> system-view
[sysname] engine bypass
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >