set application
set application <name>
set application <name> default
set application <name> default port [ <port1> <port2>... ]
set application <name> default ident-by-ip-protocol <0-255,...>
set application <name> default ident-by-icmp-type
set application <name> default ident-by-icmp-type type <0-255,...>
set application <name> default ident-by-icmp-type code <0-255,...>
set application <name> default ident-by-icmp6-type
set application <name> default ident-by-icmp6-type type <0-255,...>
set application <name> default ident-by-icmp6-type code <0-255,...>
set application <name> category <value>
set application <name> subcategory <value>
set application <name> technology <value>
set application <name> description <value>
set application <name> timeout <0-604800>
set application <name> tcp-timeout <0-604800>
set application <name> udp-timeout <0-604800>
set application <name> tcp-half-closed-timeout <1-604800>
set application <name> tcp-time-wait-timeout <1-600>
set application <name> risk <1-5>
set application <name> evasive-behavior <yes|no>
set application <name> consume-big-bandwidth <yes|no>
set application <name> used-by-malware <yes|no>
set application <name> able-to-transfer-file <yes|no>
set application <name> has-known-vulnerability <yes|no>
set application <name> tunnel-other-application <yes|no>
set application <name> tunnel-applications <yes|no>
set application <name> prone-to-misuse <yes|no>
set application <name> pervasive-use <yes|no>
set application <name> file-type-ident <yes|no>
set application <name> virus-ident <yes|no>
set application <name> data-ident <yes|no>
set application <name> no-appid-caching <yes|no>
set application <name> alg-disable-capability <value>
set application <name> parent-app <value>
set application <name> signature
set application <name> signature <name>
set application <name> signature <name> comment <value>
set application <name> signature <name> scope <protocol-data-unit|session>
set application <name> signature <name> order-free <yes|no>
set application <name> signature <name> and-condition
set application <name> signature <name> and-condition <name>
set application <name> signature <name> and-condition <name> or-condition
set application <name> signature <name> and-condition <name> or-condition <name>
set application <name> signature <name> and-condition <name> or-condition <name> operator
set application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match
set application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match context <value>
set application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match pattern <value>
set application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier
set application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name>
set application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value>
set application <name> signature <name> and-condition <name> or-condition <name> operator greater-than
set application <name> signature <name> and-condition <name> or-condition <name> operator greater-than context <value>
set application <name> signature <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295>
set application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier
set application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier <name>
set application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value>
set application <name> signature <name> and-condition <name> or-condition <name> operator less-than
set application <name> signature <name> and-condition <name> or-condition <name> operator less-than context <value>
set application <name> signature <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295>
set application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier
set application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier <name>
set application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value>
set application <name> signature <name> and-condition <name> or-condition <name> operator equal-to
set application <name> signature <name> and-condition <name> or-condition <name> operator equal-to context <value>|<unknown-req-tcp|unknown-rsp-tcp|unknown-req-udp|unknown-rsp-udp>
set application <name> signature <name> and-condition <name> or-condition <name> operator equal-to position <value>
set application <name> signature <name> and-condition <name> or-condition <name> operator equal-to mask <value>
set application <name> signature <name> and-condition <name> or-condition <name> operator equal-to value <value>
There were 3 removed commands from set application-tag
set application-tag
set application-tag <name>
set application-tag <name> tag [ <tag1> <tag2>... ]
There were 22 removed commands from set application-filter
set application-filter
set application-filter <name>
set application-filter <name> category [ <category1> <category2>... ]
set application-filter <name> subcategory [ <subcategory1> <subcategory2>... ]
set application-filter <name> technology [ <technology1> <technology2>... ]
set application-filter <name> evasive <yes>
set application-filter <name> excessive-bandwidth-use <yes>
set application-filter <name> used-by-malware <yes>
set application-filter <name> transfers-files <yes>
set application-filter <name> has-known-vulnerabilities <yes>
set application-filter <name> tunnels-other-apps <yes>
set application-filter <name> prone-to-misuse <yes>
set application-filter <name> pervasive <yes>
set application-filter <name> is-saas <yes>
set application-filter <name> new-appid <yes>
set application-filter <name> risk [ <risk1> <risk2>... ]
set application-filter <name> saas-certifications [ <saas-certifications1> <saas-certifications2>... ]
set application-filter <name> saas-risk [ <saas-risk1> <saas-risk2>... ]
set application-filter <name> tagging
set application-filter <name> tagging no-tag <yes>
set application-filter <name> tagging tag [ <tag1> <tag2>... ]
set application-filter <name> exclude [ <exclude1> <exclude2>... ]
There were 3 removed commands from set application-group
set application-group
set application-group <name>
set application-group <name> members [ <members1> <members2>... ]
There were 10 removed commands from set device-object
set device-object
set device-object <name>
set device-object <name> description <value>
set device-object <name> confidence-score <70-100>
set device-object <name> category [ <category1> <category2>... ]
set device-object <name> profile [ <profile1> <profile2>... ]
set device-object <name> osfamily [ <osfamily1> <osfamily2>... ]
set device-object <name> os [ <os1> <os2>... ]
set device-object <name> model [ <model1> <model2>... ]
set device-object <name> vendor [ <vendor1> <vendor2>... ]
There were 6 removed commands from set region
set region
set region <name>
set region <name> geo-location
set region <name> geo-location latitude <float>
set region <name> geo-location longitude <float>
set region <name> address [ <address1> <address2>... ]
There were 17 removed commands from set tag
set tag
set tag <name>
set tag <name> color <color1|color2|color3|color4|color5|color6|color7|color8|color9|color10|color11|color12|color13|color14|color15|color16|color17|color19|color20|color21|color22|color23|color24|color25|color26|color27|color28|color29|color30|color31|color32|color33|color34|color35|color36|color37|color38|color39|color40|color41|color42>
set tag <name> comments <value>
There were 5 removed commands from set authentication-object
set authentication-object
set authentication-object <name>
set authentication-object <name> authentication-method <web-form|no-captive-portal|browser-challenge>
set authentication-object <name> authentication-profile <value>
set authentication-object <name> message <value>
There were 374 removed commands from set rulebase
set rulebase
set rulebase security
set rulebase security rules
set rulebase security rules <name>
set rulebase security rules <name> from [ <from1> <from2>... ]
set rulebase security rules <name> to [ <to1> <to2>... ]
set rulebase security rules <name> source [ <source1> <source2>... ]
set rulebase security rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase security rules <name> destination [ <destination1> <destination2>... ]
set rulebase security rules <name> service [ <service1> <service2>... ]
set rulebase security rules <name> category [ <category1> <category2>... ]
set rulebase security rules <name> application [ <application1> <application2>... ]
set rulebase security rules <name> source-hip [ <source-hip1> <source-hip2>... ]
set rulebase security rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ]
set rulebase security rules <name> schedule <value>
set rulebase security rules <name> tag [ <tag1> <tag2>... ]
set rulebase security rules <name> negate-source <yes|no>
set rulebase security rules <name> negate-destination <yes|no>
set rulebase security rules <name> disabled <yes|no>
set rulebase security rules <name> description <value>
set rulebase security rules <name> group-tag <value>
set rulebase security rules <name> saas-user-list [ <saas-user-list1> <saas-user-list2>... ]
set rulebase security rules <name> saas-tenant-list [ <saas-tenant-list1> <saas-tenant-list2>... ]
set rulebase security rules <name> action <deny|allow|drop|reset-client|reset-server|reset-both>
set rulebase security rules <name> icmp-unreachable <yes|no>
set rulebase security rules <name> disable-inspect <yes|no>
set rulebase security rules <name> rule-type <universal|intrazone|interzone>
set rulebase security rules <name> option
set rulebase security rules <name> option disable-server-response-inspection <yes|no>
set rulebase security rules <name> log-setting <value>
set rulebase security rules <name> log-start <yes|no>
set rulebase security rules <name> log-end <yes|no>
set rulebase security rules <name> profile-setting
set rulebase security rules <name> profile-setting profiles
set rulebase security rules <name> profile-setting profiles url-filtering [ <url-filtering1> <url-filtering2>... ]
set rulebase security rules <name> profile-setting profiles data-filtering [ <data-filtering1> <data-filtering2>... ]
set rulebase security rules <name> profile-setting profiles file-blocking [ <file-blocking1> <file-blocking2>... ]
set rulebase security rules <name> profile-setting profiles wildfire-analysis [ <wildfire-analysis1> <wildfire-analysis2>... ]
set rulebase security rules <name> profile-setting profiles virus [ <virus1> <virus2>... ]
set rulebase security rules <name> profile-setting profiles spyware [ <spyware1> <spyware2>... ]
set rulebase security rules <name> profile-setting profiles vulnerability [ <vulnerability1> <vulnerability2>... ]
set rulebase security rules <name> profile-setting group [ <group1> <group2>... ]
set rulebase security rules <name> qos
set rulebase security rules <name> qos marking
set rulebase security rules <name> qos marking ip-dscp <value>|<ef|af11|af12|af13|af21|af22|af23|af31|af32|af33|af41|af42|af43|cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7>
set rulebase security rules <name> qos marking ip-precedence <value>|<cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7>
set rulebase security rules <name> qos marking follow-c2s-flow
set rulebase default-security-rules
set rulebase default-security-rules rules
set rulebase default-security-rules rules <name>
set rulebase default-security-rules rules <name> tag [ <tag1> <tag2>... ]
set rulebase default-security-rules rules <name> log-setting <value>
set rulebase default-security-rules rules <name> log-start <yes|no>
set rulebase default-security-rules rules <name> log-end <yes|no>
set rulebase default-security-rules rules <name> profile-setting
set rulebase default-security-rules rules <name> profile-setting profiles
set rulebase default-security-rules rules <name> profile-setting profiles url-filtering [ <url-filtering1> <url-filtering2>... ]
set rulebase default-security-rules rules <name> profile-setting profiles data-filtering [ <data-filtering1> <data-filtering2>... ]
set rulebase default-security-rules rules <name> profile-setting profiles file-blocking [ <file-blocking1> <file-blocking2>... ]
set rulebase default-security-rules rules <name> profile-setting profiles wildfire-analysis [ <wildfire-analysis1> <wildfire-analysis2>... ]
set rulebase default-security-rules rules <name> profile-setting profiles virus [ <virus1> <virus2>... ]
set rulebase default-security-rules rules <name> profile-setting profiles spyware [ <spyware1> <spyware2>... ]
set rulebase default-security-rules rules <name> profile-setting profiles vulnerability [ <vulnerability1> <vulnerability2>... ]
set rulebase default-security-rules rules <name> profile-setting group [ <group1> <group2>... ]
set rulebase default-security-rules rules <name> group-tag <value>
set rulebase default-security-rules rules <name> action <deny|allow|drop|reset-client|reset-server|reset-both>
set rulebase default-security-rules rules <name> icmp-unreachable <yes|no>
set rulebase application-override
set rulebase application-override rules
set rulebase application-override rules <name>
set rulebase application-override rules <name> from [ <from1> <from2>... ]
set rulebase application-override rules <name> to [ <to1> <to2>... ]
set rulebase application-override rules <name> source [ <source1> <source2>... ]
set rulebase application-override rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase application-override rules <name> destination [ <destination1> <destination2>... ]
set rulebase application-override rules <name> tag [ <tag1> <tag2>... ]
set rulebase application-override rules <name> negate-source <yes|no>
set rulebase application-override rules <name> negate-destination <yes|no>
set rulebase application-override rules <name> disabled <yes|no>
set rulebase application-override rules <name> description <value>
set rulebase application-override rules <name> group-tag <value>
set rulebase application-override rules <name> protocol <tcp|udp>
set rulebase application-override rules <name> port <0-65535,...>
set rulebase application-override rules <name> application <value>
set rulebase decryption
set rulebase decryption rules
set rulebase decryption rules <name>
set rulebase decryption rules <name> from [ <from1> <from2>... ]
set rulebase decryption rules <name> to [ <to1> <to2>... ]
set rulebase decryption rules <name> source [ <source1> <source2>... ]
set rulebase decryption rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase decryption rules <name> destination [ <destination1> <destination2>... ]
set rulebase decryption rules <name> tag [ <tag1> <tag2>... ]
set rulebase decryption rules <name> negate-source <yes|no>
set rulebase decryption rules <name> negate-destination <yes|no>
set rulebase decryption rules <name> disabled <yes|no>
set rulebase decryption rules <name> description <value>
set rulebase decryption rules <name> group-tag <value>
set rulebase decryption rules <name> source-hip [ <source-hip1> <source-hip2>... ]
set rulebase decryption rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ]
set rulebase decryption rules <name> service [ <service1> <service2>... ]
set rulebase decryption rules <name> category [ <category1> <category2>... ]
set rulebase decryption rules <name> action <no-decrypt|decrypt>
set rulebase decryption rules <name> type
set rulebase decryption rules <name> type ssl-forward-proxy
set rulebase decryption rules <name> type ssh-proxy
set rulebase decryption rules <name> type ssl-inbound-inspection
set rulebase decryption rules <name> type ssl-inbound-inspection certificates [ <certificates1> <certificates2>... ]
set rulebase decryption rules <name> profile <value>
set rulebase decryption rules <name> log-success <yes|no>
set rulebase decryption rules <name> log-fail <yes|no>
set rulebase decryption rules <name> log-setting <value>
set rulebase authentication
set rulebase authentication rules
set rulebase authentication rules <name>
set rulebase authentication rules <name> from [ <from1> <from2>... ]
set rulebase authentication rules <name> to [ <to1> <to2>... ]
set rulebase authentication rules <name> source [ <source1> <source2>... ]
set rulebase authentication rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase authentication rules <name> destination [ <destination1> <destination2>... ]
set rulebase authentication rules <name> source-hip [ <source-hip1> <source-hip2>... ]
set rulebase authentication rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ]
set rulebase authentication rules <name> tag [ <tag1> <tag2>... ]
set rulebase authentication rules <name> negate-source <yes|no>
set rulebase authentication rules <name> negate-destination <yes|no>
set rulebase authentication rules <name> disabled <yes|no>
set rulebase authentication rules <name> description <value>
set rulebase authentication rules <name> group-tag <value>
set rulebase authentication rules <name> service [ <service1> <service2>... ]
set rulebase authentication rules <name> category [ <category1> <category2>... ]
set rulebase authentication rules <name> authentication-enforcement <value>
set rulebase authentication rules <name> log-setting <value>
set rulebase authentication rules <name> timeout <1-1440>
set rulebase authentication rules <name> log-authentication-timeout <yes|no>
set rulebase authentication rules <name> bypass-web-proxy-authentication <yes|no>
set rulebase tunnel-inspect
set rulebase tunnel-inspect rules
set rulebase tunnel-inspect rules <name>
set rulebase tunnel-inspect rules <name> from [ <from1> <from2>... ]
set rulebase tunnel-inspect rules <name> to [ <to1> <to2>... ]
set rulebase tunnel-inspect rules <name> source [ <source1> <source2>... ]
set rulebase tunnel-inspect rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase tunnel-inspect rules <name> destination [ <destination1> <destination2>... ]
set rulebase tunnel-inspect rules <name> tag [ <tag1> <tag2>... ]
set rulebase tunnel-inspect rules <name> negate-source <yes|no>
set rulebase tunnel-inspect rules <name> negate-destination <yes|no>
set rulebase tunnel-inspect rules <name> disabled <yes|no>
set rulebase tunnel-inspect rules <name> description <value>
set rulebase tunnel-inspect rules <name> group-tag <value>
set rulebase tunnel-inspect rules <name> application [ <application1> <application2>... ]
set rulebase tunnel-inspect rules <name> tunnel-id
set rulebase tunnel-inspect rules <name> tunnel-id vni
set rulebase tunnel-inspect rules <name> tunnel-id vni <name>
set rulebase tunnel-inspect rules <name> tunnel-id vni <name> id <0-16777215,...>
set rulebase tunnel-inspect rules <name> inspect-options
set rulebase tunnel-inspect rules <name> inspect-options max-level-inspection <1|2>
set rulebase tunnel-inspect rules <name> inspect-options drop-over-max <yes|no>
set rulebase tunnel-inspect rules <name> inspect-options drop-unknown-protocol <yes|no>
set rulebase tunnel-inspect rules <name> inspect-options drop-strict-checking <yes|no>
set rulebase tunnel-inspect rules <name> inspect-options return-vxlan-to-source <yes|no>
set rulebase tunnel-inspect rules <name> zone-assign
set rulebase tunnel-inspect rules <name> zone-assign source [ <source1> <source2>... ]
set rulebase tunnel-inspect rules <name> zone-assign destination [ <destination1> <destination2>... ]
set rulebase tunnel-inspect rules <name> monitor-options
set rulebase tunnel-inspect rules <name> monitor-options monitor-name <value>
set rulebase tunnel-inspect rules <name> monitor-options monitor-id <1-16777215>
set rulebase tunnel-inspect rules <name> monitor-options log-setting-override
set rulebase tunnel-inspect rules <name> monitor-options log-setting-override enable <yes|no>
set rulebase tunnel-inspect rules <name> monitor-options log-setting-override log-setting <value>
set rulebase tunnel-inspect rules <name> monitor-options log-setting-override log-start <yes|no>
set rulebase tunnel-inspect rules <name> monitor-options log-setting-override log-end <yes|no>
set rulebase nat
set rulebase nat rules
set rulebase nat rules <name>
set rulebase nat rules <name> from [ <from1> <from2>... ]
set rulebase nat rules <name> to [ <to1> <to2>... ]
set rulebase nat rules <name> source [ <source1> <source2>... ]
set rulebase nat rules <name> destination [ <destination1> <destination2>... ]
set rulebase nat rules <name> service <value>
set rulebase nat rules <name> nat-type <ipv4|nat64|nptv6>
set rulebase nat rules <name> to-interface <value>|<any>
set rulebase nat rules <name> source-translation
set rulebase nat rules <name> source-translation dynamic-ip-and-port
set rulebase nat rules <name> source-translation dynamic-ip-and-port translated-address [ <translated-address1> <translated-address2>... ]
set rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address
set rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address interface <value>
set rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address ip <value>
set rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address floating-ip <value>
set rulebase nat rules <name> source-translation persistent-dynamic-ip-and-port
set rulebase nat rules <name> source-translation persistent-dynamic-ip-and-port translated-address [ <translated-address1> <translated-address2>... ]
set rulebase nat rules <name> source-translation persistent-dynamic-ip-and-port interface-address
set rulebase nat rules <name> source-translation persistent-dynamic-ip-and-port interface-address interface <value>
set rulebase nat rules <name> source-translation persistent-dynamic-ip-and-port interface-address ip <value>
set rulebase nat rules <name> source-translation persistent-dynamic-ip-and-port interface-address floating-ip <value>
set rulebase nat rules <name> source-translation dynamic-ip
set rulebase nat rules <name> source-translation dynamic-ip interface-address
set rulebase nat rules <name> source-translation dynamic-ip interface-address interface <value>
set rulebase nat rules <name> source-translation dynamic-ip interface-address ipv6 <value>
set rulebase nat rules <name> source-translation dynamic-ip interface-address floating-ip <value>
set rulebase nat rules <name> source-translation dynamic-ip translated-address [ <translated-address1> <translated-address2>... ]
set rulebase nat rules <name> source-translation dynamic-ip fallback
set rulebase nat rules <name> source-translation dynamic-ip fallback translated-address [ <translated-address1> <translated-address2>... ]
set rulebase nat rules <name> source-translation dynamic-ip fallback interface-address
set rulebase nat rules <name> source-translation dynamic-ip fallback interface-address interface <value>
set rulebase nat rules <name> source-translation dynamic-ip fallback interface-address ip <value>
set rulebase nat rules <name> source-translation dynamic-ip fallback interface-address floating-ip <value>
set rulebase nat rules <name> source-translation static-ip
set rulebase nat rules <name> source-translation static-ip translated-address <value>|<ip/netmask>|<ip-range>
set rulebase nat rules <name> source-translation static-ip bi-directional <yes|no>
set rulebase nat rules <name> destination-translation
set rulebase nat rules <name> destination-translation translated-address <value>|<ip/netmask>|<ip-range>
set rulebase nat rules <name> destination-translation translated-port <1-65535>
set rulebase nat rules <name> destination-translation dns-rewrite
set rulebase nat rules <name> destination-translation dns-rewrite direction <reverse|forward>
set rulebase nat rules <name> dynamic-destination-translation
set rulebase nat rules <name> dynamic-destination-translation translated-address <value>|<ip/netmask>|<ip-range>
set rulebase nat rules <name> dynamic-destination-translation translated-port <1-65535>
set rulebase nat rules <name> dynamic-destination-translation distribution <round-robin|source-ip-hash|ip-modulo|ip-hash|least-sessions>
set rulebase nat rules <name> active-active-device-binding <primary|both|0|1>
set rulebase nat rules <name> tag [ <tag1> <tag2>... ]
set rulebase nat rules <name> disabled <yes|no>
set rulebase nat rules <name> description <value>
set rulebase nat rules <name> group-tag <value>
set rulebase qos
set rulebase qos rules
set rulebase qos rules <name>
set rulebase qos rules <name> from [ <from1> <from2>... ]
set rulebase qos rules <name> to [ <to1> <to2>... ]
set rulebase qos rules <name> source [ <source1> <source2>... ]
set rulebase qos rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase qos rules <name> destination [ <destination1> <destination2>... ]
set rulebase qos rules <name> service [ <service1> <service2>... ]
set rulebase qos rules <name> category [ <category1> <category2>... ]
set rulebase qos rules <name> application [ <application1> <application2>... ]
set rulebase qos rules <name> source-hip [ <source-hip1> <source-hip2>... ]
set rulebase qos rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ]
set rulebase qos rules <name> schedule <value>
set rulebase qos rules <name> tag [ <tag1> <tag2>... ]
set rulebase qos rules <name> negate-source <yes|no>
set rulebase qos rules <name> negate-destination <yes|no>
set rulebase qos rules <name> disabled <yes|no>
set rulebase qos rules <name> description <value>
set rulebase qos rules <name> group-tag <value>
set rulebase qos rules <name> dscp-tos
set rulebase qos rules <name> dscp-tos any
set rulebase qos rules <name> dscp-tos codepoints
set rulebase qos rules <name> dscp-tos codepoints <name>
set rulebase qos rules <name> dscp-tos codepoints <name> ef
set rulebase qos rules <name> dscp-tos codepoints <name> ef codepoint <ef>
set rulebase qos rules <name> dscp-tos codepoints <name> af
set rulebase qos rules <name> dscp-tos codepoints <name> af codepoint <af11|af12|af13|af21|af22|af23|af31|af32|af33|af41|af42|af43>
set rulebase qos rules <name> dscp-tos codepoints <name> cs
set rulebase qos rules <name> dscp-tos codepoints <name> cs codepoint <cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7>
set rulebase qos rules <name> dscp-tos codepoints <name> tos
set rulebase qos rules <name> dscp-tos codepoints <name> tos codepoint <cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7>
set rulebase qos rules <name> dscp-tos codepoints <name> custom
set rulebase qos rules <name> dscp-tos codepoints <name> custom codepoint
set rulebase qos rules <name> dscp-tos codepoints <name> custom codepoint name <value>
set rulebase qos rules <name> dscp-tos codepoints <name> custom codepoint value <value>
set rulebase qos rules <name> action
set rulebase qos rules <name> action class <1|2|3|4|5|6|7|8>
set rulebase pbf
set rulebase pbf rules
set rulebase pbf rules <name>
set rulebase pbf rules <name> from
set rulebase pbf rules <name> from zone [ <zone1> <zone2>... ]
set rulebase pbf rules <name> from interface [ <interface1> <interface2>... ]
set rulebase pbf rules <name> source [ <source1> <source2>... ]
set rulebase pbf rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase pbf rules <name> destination [ <destination1> <destination2>... ]
set rulebase pbf rules <name> service [ <service1> <service2>... ]
set rulebase pbf rules <name> schedule <value>
set rulebase pbf rules <name> tag [ <tag1> <tag2>... ]
set rulebase pbf rules <name> negate-source <yes|no>
set rulebase pbf rules <name> negate-destination <yes|no>
set rulebase pbf rules <name> disabled <yes|no>
set rulebase pbf rules <name> description <value>
set rulebase pbf rules <name> group-tag <value>
set rulebase pbf rules <name> application [ <application1> <application2>... ]
set rulebase pbf rules <name> action
set rulebase pbf rules <name> action forward
set rulebase pbf rules <name> action forward egress-interface <value>
set rulebase pbf rules <name> action forward nexthop
set rulebase pbf rules <name> action forward nexthop ip-address <value>|<ip/netmask>
set rulebase pbf rules <name> action forward nexthop fqdn <value>
set rulebase pbf rules <name> action forward monitor
set rulebase pbf rules <name> action forward monitor profile <value>
set rulebase pbf rules <name> action forward monitor disable-if-unreachable <yes|no>
set rulebase pbf rules <name> action forward monitor ip-address <ip/netmask>
set rulebase pbf rules <name> action discard
set rulebase pbf rules <name> action no-pbf
set rulebase pbf rules <name> enforce-symmetric-return
set rulebase pbf rules <name> enforce-symmetric-return enabled <yes|no>
set rulebase pbf rules <name> enforce-symmetric-return nexthop-address-list
set rulebase pbf rules <name> enforce-symmetric-return nexthop-address-list <name>
set rulebase pbf rules <name> active-active-device-binding <both|0|1>
set rulebase sdwan
set rulebase sdwan rules
set rulebase sdwan rules <name>
set rulebase sdwan rules <name> from [ <from1> <from2>... ]
set rulebase sdwan rules <name> to [ <to1> <to2>... ]
set rulebase sdwan rules <name> source [ <source1> <source2>... ]
set rulebase sdwan rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase sdwan rules <name> destination [ <destination1> <destination2>... ]
set rulebase sdwan rules <name> application [ <application1> <application2>... ]
set rulebase sdwan rules <name> service [ <service1> <service2>... ]
set rulebase sdwan rules <name> tag [ <tag1> <tag2>... ]
set rulebase sdwan rules <name> negate-source <yes|no>
set rulebase sdwan rules <name> negate-destination <yes|no>
set rulebase sdwan rules <name> disabled <yes|no>
set rulebase sdwan rules <name> description <value>
set rulebase sdwan rules <name> group-tag <value>
set rulebase sdwan rules <name> path-quality-profile <value>
set rulebase sdwan rules <name> saas-quality-profile <value>
set rulebase sdwan rules <name> error-correction-profile <value>
set rulebase sdwan rules <name> action
set rulebase sdwan rules <name> action traffic-distribution-profile <value>
set rulebase sdwan rules <name> action app-failover-for-nat-sessions <keep-existing-link|failover-to-better-path>
set rulebase dos
set rulebase dos rules
set rulebase dos rules <name>
set rulebase dos rules <name> from
set rulebase dos rules <name> from zone [ <zone1> <zone2>... ]
set rulebase dos rules <name> from interface [ <interface1> <interface2>... ]
set rulebase dos rules <name> to
set rulebase dos rules <name> to zone [ <zone1> <zone2>... ]
set rulebase dos rules <name> to interface [ <interface1> <interface2>... ]
set rulebase dos rules <name> source [ <source1> <source2>... ]
set rulebase dos rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase dos rules <name> destination [ <destination1> <destination2>... ]
set rulebase dos rules <name> service [ <service1> <service2>... ]
set rulebase dos rules <name> schedule <value>
set rulebase dos rules <name> tag [ <tag1> <tag2>... ]
set rulebase dos rules <name> negate-source <yes|no>
set rulebase dos rules <name> negate-destination <yes|no>
set rulebase dos rules <name> disabled <yes|no>
set rulebase dos rules <name> description <value>
set rulebase dos rules <name> group-tag <value>
set rulebase dos rules <name> protection
set rulebase dos rules <name> protection aggregate
set rulebase dos rules <name> protection aggregate profile <value>
set rulebase dos rules <name> protection classified
set rulebase dos rules <name> protection classified profile <value>
set rulebase dos rules <name> protection classified classification-criteria
set rulebase dos rules <name> protection classified classification-criteria address <source-ip-only|destination-ip-only|src-dest-ip-both>
set rulebase dos rules <name> action
set rulebase dos rules <name> action deny
set rulebase dos rules <name> action allow
set rulebase dos rules <name> action protect
set rulebase dos rules <name> log-setting <value>
set rulebase network-packet-broker
set rulebase network-packet-broker rules
set rulebase network-packet-broker rules <name>
set rulebase network-packet-broker rules <name> from [ <from1> <from2>... ]
set rulebase network-packet-broker rules <name> to [ <to1> <to2>... ]
set rulebase network-packet-broker rules <name> source [ <source1> <source2>... ]
set rulebase network-packet-broker rules <name> source-user [ <source-user1> <source-user2>... ]
set rulebase network-packet-broker rules <name> destination [ <destination1> <destination2>... ]
set rulebase network-packet-broker rules <name> application [ <application1> <application2>... ]
set rulebase network-packet-broker rules <name> service [ <service1> <service2>... ]
set rulebase network-packet-broker rules <name> tag [ <tag1> <tag2>... ]
set rulebase network-packet-broker rules <name> negate-source <yes|no>
set rulebase network-packet-broker rules <name> negate-destination <yes|no>
set rulebase network-packet-broker rules <name> disabled <yes|no>
set rulebase network-packet-broker rules <name> description <value>
set rulebase network-packet-broker rules <name> group-tag <value>
set rulebase network-packet-broker rules <name> source-hip [ <source-hip1> <source-hip2>... ]
set rulebase network-packet-broker rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ]
set rulebase network-packet-broker rules <name> traffic-type
set rulebase network-packet-broker rules <name> traffic-type tls-decrypted <yes|no>
set rulebase network-packet-broker rules <name> traffic-type tls-encrypted <yes|no>
set rulebase network-packet-broker rules <name> traffic-type non-tls <yes|no>
set rulebase network-packet-broker rules <name> action
set rulebase network-packet-broker rules <name> action packet-broker-profile <value>
There were 21 removed commands from set user-context-segment
set user-context-segment
set user-context-segment assignments
set user-context-segment assignments <name>
set user-context-segment assignments <name> description <value>
set user-context-segment assignments <name> disabled <yes|no>
set user-context-segment assignments <name> publisher-segments
set user-context-segment assignments <name> publisher-segments ipuser <#text>
set user-context-segment assignments <name> publisher-segments iptag <#text>
set user-context-segment assignments <name> publisher-segments usertag <#text>
set user-context-segment assignments <name> publisher-segments quarantine <#text>
set user-context-segment assignments <name> publisher-segments ipportuser <#text>
set user-context-segment assignments <name> subscriber-segments
set user-context-segment assignments <name> subscriber-segments <name>
set user-context-segment assignments <name> subscriber-segments <name> ipuser <enabled|disabled>
set user-context-segment assignments <name> subscriber-segments <name> iptag <enabled|disabled>
set user-context-segment assignments <name> subscriber-segments <name> usertag <enabled|disabled>
set user-context-segment assignments <name> subscriber-segments <name> quarantine <enabled|disabled>
set user-context-segment assignments <name> subscriber-segments <name> ipportuser <enabled|disabled>
set user-context-segment assignments <name> firewall-selection
set user-context-segment assignments <name> firewall-selection <name>
set user-context-segment assignments <name> firewall-selection <name> vsys [ <vsys1> <vsys2>... ]