Set Commands Removed in PAN-OS 102
Table of Contents
Expand all | Collapse all
Set Commands Removed in PAN-OS 102
Command line interface 'set' commands that are removed in PAN-OS 10.2:
The following commands are no longer available in the 10.2 release.
set deviceconfig setting global-protect keepalive <3-150> set deviceconfig setting global-protect worker-threads <10-100> set mgt-config password-complexity minimum-length <6-15> set mgt-config password-complexity minimum-length <0-15> set mgt-config users <name> permissions role-based vsysreader set mgt-config users <name> permissions role-based vsysreader <name> set mgt-config users <name> permissions role-based vsysreader <name> vsys [ <vsys1> <vsys2>... ] set mgt-config users <name> permissions role-based vsysadmin set mgt-config users <name> permissions role-based vsysadmin <name> set mgt-config users <name> permissions role-based vsysadmin <name> vsys [ <vsys1> <vsys2>... ] set mgt-config users <name> permissions role-based custom vsys [ <vsys1> <vsys2>... ] set network profiles bfd-profile <name> min-tx-interval <100-2000> set network profiles bfd-profile <name> min-rx-interval <100-2000> set network profiles bfd-profile <name> detection-multiplier <2-50> set network ike crypto-profiles ipsec-crypto-profiles <name> dh-group <no-pfs|group1|group2|group5|group14|group19|group20> set network logical-router <name> vrf <name> bgp local-as <1-4294967295> set network logical-router <name> vrf <name> bgp peer-group <name> address-family ipv4 set network logical-router <name> vrf <name> bgp peer-group <name> address-family ipv4 unicast <value> set network logical-router <name> vrf <name> bgp peer-group <name> address-family ipv6 set network logical-router <name> vrf <name> bgp peer-group <name> address-family ipv6 unicast <value> set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> peer-as <1-4294967295> set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> address-family set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> address-family inherit <yes|no> set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> address-family ipv4 set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> address-family ipv4 unicast <value> set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> address-family ipv6 set network logical-router <name> vrf <name> bgp peer-group <name> peer <name> address-family ipv6 unicast <value> set network logical-router <name> vrf <name> bgp redistribution-rule set network logical-router <name> vrf <name> bgp redistribution-rule ipv4 set network logical-router <name> vrf <name> bgp redistribution-rule ipv4 unicast <value> set network logical-router <name> vrf <name> bgp redistribution-rule ipv6 set network logical-router <name> vrf <name> bgp redistribution-rule ipv6 unicast <value> set network logical-router <name> vrf <name> bgp address-family-identifier set network logical-router <name> vrf <name> bgp address-family-identifier ipv4 set network logical-router <name> vrf <name> bgp address-family-identifier ipv4 network set network logical-router <name> vrf <name> bgp address-family-identifier ipv4 network <name> set network logical-router <name> vrf <name> bgp address-family-identifier ipv4 network <name> unicast <yes|no> set network logical-router <name> vrf <name> bgp address-family-identifier ipv6 set network logical-router <name> vrf <name> bgp address-family-identifier ipv6 network set network logical-router <name> vrf <name> bgp address-family-identifier ipv6 network <name> set network logical-router <name> vrf <name> bgp address-family-identifier ipv6 network <name> unicast <yes|no> set network routing-profile bgp address-family-profile <name> ipv4 set network routing-profile bgp address-family-profile <name> ipv6
set network shared-gateway set network shared-gateway <name> set network shared-gateway <name> display-name <value> set network shared-gateway <name> import set network shared-gateway <name> import dns-proxy <value> set network shared-gateway <name> import network set network shared-gateway <name> import network interface [ <interface1> <interface2>... ] set network shared-gateway <name> zone set network shared-gateway <name> zone <name> set network shared-gateway <name> zone <name> network set network shared-gateway <name> zone <name> network zone-protection-profile <value> set network shared-gateway <name> zone <name> network enable-packet-buffer-protection <yes|no> set network shared-gateway <name> zone <name> network log-setting <value> set network shared-gateway <name> zone <name> network layer3 [ <layer31> <layer32>... ] set network shared-gateway <name> zone <name> network external [ <external1> <external2>... ] set network shared-gateway <name> zone <name> user-acl set network shared-gateway <name> zone <name> user-acl include-list [ <include-list1> <include-list2>... ] set network shared-gateway <name> zone <name> user-acl exclude-list [ <exclude-list1> <exclude-list2>... ] set network shared-gateway <name> address set network shared-gateway <name> address <name> set network shared-gateway <name> address <name> description <value> set network shared-gateway <name> address <name> ip-netmask <ip/netmask> set network shared-gateway <name> address <name> ip-range <ip-range> set network shared-gateway <name> address <name> ip-wildcard <ipdiscontmask> set network shared-gateway <name> address <name> fqdn <value> set network shared-gateway <name> address <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> address-group set network shared-gateway <name> address-group <name> set network shared-gateway <name> address-group <name> description <value> set network shared-gateway <name> address-group <name> static [ <static1> <static2>... ] set network shared-gateway <name> address-group <name> dynamic set network shared-gateway <name> address-group <name> dynamic filter <value> set network shared-gateway <name> address-group <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> service set network shared-gateway <name> service <name> set network shared-gateway <name> service <name> description <value> set network shared-gateway <name> service <name> protocol set network shared-gateway <name> service <name> protocol tcp set network shared-gateway <name> service <name> protocol tcp port <0-65535,...> set network shared-gateway <name> service <name> protocol tcp source-port <0-65535,...> set network shared-gateway <name> service <name> protocol tcp override set network shared-gateway <name> service <name> protocol tcp override no set network shared-gateway <name> service <name> protocol tcp override yes set network shared-gateway <name> service <name> protocol tcp override yes timeout <1-604800> set network shared-gateway <name> service <name> protocol tcp override yes halfclose-timeout <1-604800> set network shared-gateway <name> service <name> protocol tcp override yes timewait-timeout <1-600> set network shared-gateway <name> service <name> protocol udp set network shared-gateway <name> service <name> protocol udp port <0-65535,...> set network shared-gateway <name> service <name> protocol udp source-port <0-65535,...> set network shared-gateway <name> service <name> protocol udp override set network shared-gateway <name> service <name> protocol udp override no set network shared-gateway <name> service <name> protocol udp override yes set network shared-gateway <name> service <name> protocol udp override yes timeout <1-604800> set network shared-gateway <name> service <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> service-group set network shared-gateway <name> service-group <name> set network shared-gateway <name> service-group <name> members [ <members1> <members2>... ] set network shared-gateway <name> service-group <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> tag set network shared-gateway <name> tag <name> set network shared-gateway <name> tag <name> color <color1|color2|color3|color4|color5|color6|color7|color8|color9|color10|color11|color12|color13|color14|color15|color16|color17|color19|color20|color21|color22|color23|color24|color25|color26|color27|color28|color29|color30|color31|color32|color33|color34|color35|color36|color37|color38|color39|color40|color41|color42> set network shared-gateway <name> tag <name> comments <value> set network shared-gateway <name> log-settings set network shared-gateway <name> log-settings snmptrap set network shared-gateway <name> log-settings snmptrap <name> set network shared-gateway <name> log-settings snmptrap <name> version set network shared-gateway <name> log-settings snmptrap <name> version v2c set network shared-gateway <name> log-settings snmptrap <name> version v2c server set network shared-gateway <name> log-settings snmptrap <name> version v2c server <name> set network shared-gateway <name> log-settings snmptrap <name> version v2c server <name> manager <ip/netmask>|<value> set network shared-gateway <name> log-settings snmptrap <name> version v2c server <name> community <value> set network shared-gateway <name> log-settings snmptrap <name> version v3 set network shared-gateway <name> log-settings snmptrap <name> version v3 server set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> manager <ip/netmask>|<value> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> user <value> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> engineid <value> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> authpwd <value> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> privpwd <value> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> authproto <SHA|SHA-224|SHA-256|SHA-384|SHA-512> set network shared-gateway <name> log-settings snmptrap <name> version v3 server <name> privproto <AES|AES-192|AES-256> set network shared-gateway <name> log-settings email set network shared-gateway <name> log-settings email <name> set network shared-gateway <name> log-settings email <name> server set network shared-gateway <name> log-settings email <name> server <name> set network shared-gateway <name> log-settings email <name> server <name> display-name <value> set network shared-gateway <name> log-settings email <name> server <name> from <value> set network shared-gateway <name> log-settings email <name> server <name> to <value> set network shared-gateway <name> log-settings email <name> server <name> and-also-to <value> set network shared-gateway <name> log-settings email <name> server <name> gateway <value> set network shared-gateway <name> log-settings email <name> server <name> protocol <SMTP|TLS> set network shared-gateway <name> log-settings email <name> server <name> port <1-65535> set network shared-gateway <name> log-settings email <name> server <name> tls-version <1.2|1.1> set network shared-gateway <name> log-settings email <name> server <name> auth <Auto|Login|Plain> set network shared-gateway <name> log-settings email <name> server <name> certificate-profile <value> set network shared-gateway <name> log-settings email <name> server <name> username <value> set network shared-gateway <name> log-settings email <name> server <name> password <value> set network shared-gateway <name> log-settings email <name> format set network shared-gateway <name> log-settings email <name> format traffic <value> set network shared-gateway <name> log-settings email <name> format threat <value> set network shared-gateway <name> log-settings email <name> format wildfire <value> set network shared-gateway <name> log-settings email <name> format url <value> set network shared-gateway <name> log-settings email <name> format data <value> set network shared-gateway <name> log-settings email <name> format tunnel <value> set network shared-gateway <name> log-settings email <name> format auth <value> set network shared-gateway <name> log-settings email <name> format userid <value> set network shared-gateway <name> log-settings email <name> format iptag <value> set network shared-gateway <name> log-settings email <name> format decryption <value> set network shared-gateway <name> log-settings email <name> format config <value> set network shared-gateway <name> log-settings email <name> format system <value> set network shared-gateway <name> log-settings email <name> format hip-match <value> set network shared-gateway <name> log-settings email <name> format correlation <value> set network shared-gateway <name> log-settings email <name> format escaping set network shared-gateway <name> log-settings email <name> format escaping escaped-characters <value> set network shared-gateway <name> log-settings email <name> format escaping escape-character <value> set network shared-gateway <name> log-settings syslog set network shared-gateway <name> log-settings syslog <name> set network shared-gateway <name> log-settings syslog <name> server set network shared-gateway <name> log-settings syslog <name> server <name> set network shared-gateway <name> log-settings syslog <name> server <name> server <value> set network shared-gateway <name> log-settings syslog <name> server <name> transport <UDP|TCP|SSL> set network shared-gateway <name> log-settings syslog <name> server <name> port <1-65535> set network shared-gateway <name> log-settings syslog <name> server <name> format <BSD|IETF> set network shared-gateway <name> log-settings syslog <name> server <name> facility <LOG_USER|LOG_LOCAL0|LOG_LOCAL1|LOG_LOCAL2|LOG_LOCAL3|LOG_LOCAL4|LOG_LOCAL5|LOG_LOCAL6|LOG_LOCAL7> set network shared-gateway <name> log-settings syslog <name> format set network shared-gateway <name> log-settings syslog <name> format traffic <value> set network shared-gateway <name> log-settings syslog <name> format threat <value> set network shared-gateway <name> log-settings syslog <name> format wildfire <value> set network shared-gateway <name> log-settings syslog <name> format url <value> set network shared-gateway <name> log-settings syslog <name> format data <value> set network shared-gateway <name> log-settings syslog <name> format tunnel <value> set network shared-gateway <name> log-settings syslog <name> format auth <value> set network shared-gateway <name> log-settings syslog <name> format userid <value> set network shared-gateway <name> log-settings syslog <name> format iptag <value> set network shared-gateway <name> log-settings syslog <name> format decryption <value> set network shared-gateway <name> log-settings syslog <name> format config <value> set network shared-gateway <name> log-settings syslog <name> format system <value> set network shared-gateway <name> log-settings syslog <name> format hip-match <value> set network shared-gateway <name> log-settings syslog <name> format correlation <value> set network shared-gateway <name> log-settings syslog <name> format escaping set network shared-gateway <name> log-settings syslog <name> format escaping escaped-characters <value> set network shared-gateway <name> log-settings syslog <name> format escaping escape-character <value> set network shared-gateway <name> log-settings http set network shared-gateway <name> log-settings http <name> set network shared-gateway <name> log-settings http <name> tag-registration <yes|no> set network shared-gateway <name> log-settings http <name> server set network shared-gateway <name> log-settings http <name> server <name> set network shared-gateway <name> log-settings http <name> server <name> address <value> set network shared-gateway <name> log-settings http <name> server <name> protocol <HTTP|HTTPS> set network shared-gateway <name> log-settings http <name> server <name> port <1-65535> set network shared-gateway <name> log-settings http <name> server <name> tls-version <1.2|1.1|1.0> set network shared-gateway <name> log-settings http <name> server <name> certificate-profile <value> set network shared-gateway <name> log-settings http <name> server <name> http-method <value> set network shared-gateway <name> log-settings http <name> server <name> username <value> set network shared-gateway <name> log-settings http <name> server <name> password <value> set network shared-gateway <name> log-settings http <name> format set network shared-gateway <name> log-settings http <name> format config set network shared-gateway <name> log-settings http <name> format config name <value> set network shared-gateway <name> log-settings http <name> format config url-format <value> set network shared-gateway <name> log-settings http <name> format config headers set network shared-gateway <name> log-settings http <name> format config headers <name> set network shared-gateway <name> log-settings http <name> format config headers <name> value <value> set network shared-gateway <name> log-settings http <name> format config params set network shared-gateway <name> log-settings http <name> format config params <name> set network shared-gateway <name> log-settings http <name> format config params <name> value <value> set network shared-gateway <name> log-settings http <name> format config payload <value> set network shared-gateway <name> log-settings http <name> format system set network shared-gateway <name> log-settings http <name> format system name <value> set network shared-gateway <name> log-settings http <name> format system url-format <value> set network shared-gateway <name> log-settings http <name> format system headers set network shared-gateway <name> log-settings http <name> format system headers <name> set network shared-gateway <name> log-settings http <name> format system headers <name> value <value> set network shared-gateway <name> log-settings http <name> format system params set network shared-gateway <name> log-settings http <name> format system params <name> set network shared-gateway <name> log-settings http <name> format system params <name> value <value> set network shared-gateway <name> log-settings http <name> format system payload <value> set network shared-gateway <name> log-settings http <name> format traffic set network shared-gateway <name> log-settings http <name> format traffic name <value> set network shared-gateway <name> log-settings http <name> format traffic url-format <value> set network shared-gateway <name> log-settings http <name> format traffic headers set network shared-gateway <name> log-settings http <name> format traffic headers <name> set network shared-gateway <name> log-settings http <name> format traffic headers <name> value <value> set network shared-gateway <name> log-settings http <name> format traffic params set network shared-gateway <name> log-settings http <name> format traffic params <name> set network shared-gateway <name> log-settings http <name> format traffic params <name> value <value> set network shared-gateway <name> log-settings http <name> format traffic payload <value> set network shared-gateway <name> log-settings http <name> format threat set network shared-gateway <name> log-settings http <name> format threat name <value> set network shared-gateway <name> log-settings http <name> format threat url-format <value> set network shared-gateway <name> log-settings http <name> format threat headers set network shared-gateway <name> log-settings http <name> format threat headers <name> set network shared-gateway <name> log-settings http <name> format threat headers <name> value <value> set network shared-gateway <name> log-settings http <name> format threat params set network shared-gateway <name> log-settings http <name> format threat params <name> set network shared-gateway <name> log-settings http <name> format threat params <name> value <value> set network shared-gateway <name> log-settings http <name> format threat payload <value> set network shared-gateway <name> log-settings http <name> format wildfire set network shared-gateway <name> log-settings http <name> format wildfire name <value> set network shared-gateway <name> log-settings http <name> format wildfire url-format <value> set network shared-gateway <name> log-settings http <name> format wildfire headers set network shared-gateway <name> log-settings http <name> format wildfire headers <name> set network shared-gateway <name> log-settings http <name> format wildfire headers <name> value <value> set network shared-gateway <name> log-settings http <name> format wildfire params set network shared-gateway <name> log-settings http <name> format wildfire params <name> set network shared-gateway <name> log-settings http <name> format wildfire params <name> value <value> set network shared-gateway <name> log-settings http <name> format wildfire payload <value> set network shared-gateway <name> log-settings http <name> format url set network shared-gateway <name> log-settings http <name> format url name <value> set network shared-gateway <name> log-settings http <name> format url url-format <value> set network shared-gateway <name> log-settings http <name> format url headers set network shared-gateway <name> log-settings http <name> format url headers <name> set network shared-gateway <name> log-settings http <name> format url headers <name> value <value> set network shared-gateway <name> log-settings http <name> format url params set network shared-gateway <name> log-settings http <name> format url params <name> set network shared-gateway <name> log-settings http <name> format url params <name> value <value> set network shared-gateway <name> log-settings http <name> format url payload <value> set network shared-gateway <name> log-settings http <name> format data set network shared-gateway <name> log-settings http <name> format data name <value> set network shared-gateway <name> log-settings http <name> format data url-format <value> set network shared-gateway <name> log-settings http <name> format data headers set network shared-gateway <name> log-settings http <name> format data headers <name> set network shared-gateway <name> log-settings http <name> format data headers <name> value <value> set network shared-gateway <name> log-settings http <name> format data params set network shared-gateway <name> log-settings http <name> format data params <name> set network shared-gateway <name> log-settings http <name> format data params <name> value <value> set network shared-gateway <name> log-settings http <name> format data payload <value> set network shared-gateway <name> log-settings http <name> format tunnel set network shared-gateway <name> log-settings http <name> format tunnel name <value> set network shared-gateway <name> log-settings http <name> format tunnel url-format <value> set network shared-gateway <name> log-settings http <name> format tunnel headers set network shared-gateway <name> log-settings http <name> format tunnel headers <name> set network shared-gateway <name> log-settings http <name> format tunnel headers <name> value <value> set network shared-gateway <name> log-settings http <name> format tunnel params set network shared-gateway <name> log-settings http <name> format tunnel params <name> set network shared-gateway <name> log-settings http <name> format tunnel params <name> value <value> set network shared-gateway <name> log-settings http <name> format tunnel payload <value> set network shared-gateway <name> log-settings http <name> format auth set network shared-gateway <name> log-settings http <name> format auth name <value> set network shared-gateway <name> log-settings http <name> format auth url-format <value> set network shared-gateway <name> log-settings http <name> format auth headers set network shared-gateway <name> log-settings http <name> format auth headers <name> set network shared-gateway <name> log-settings http <name> format auth headers <name> value <value> set network shared-gateway <name> log-settings http <name> format auth params set network shared-gateway <name> log-settings http <name> format auth params <name> set network shared-gateway <name> log-settings http <name> format auth params <name> value <value> set network shared-gateway <name> log-settings http <name> format auth payload <value> set network shared-gateway <name> log-settings http <name> format userid set network shared-gateway <name> log-settings http <name> format userid name <value> set network shared-gateway <name> log-settings http <name> format userid url-format <value> set network shared-gateway <name> log-settings http <name> format userid headers set network shared-gateway <name> log-settings http <name> format userid headers <name> set network shared-gateway <name> log-settings http <name> format userid headers <name> value <value> set network shared-gateway <name> log-settings http <name> format userid params set network shared-gateway <name> log-settings http <name> format userid params <name> set network shared-gateway <name> log-settings http <name> format userid params <name> value <value> set network shared-gateway <name> log-settings http <name> format userid payload <value> set network shared-gateway <name> log-settings http <name> format iptag set network shared-gateway <name> log-settings http <name> format iptag name <value> set network shared-gateway <name> log-settings http <name> format iptag url-format <value> set network shared-gateway <name> log-settings http <name> format iptag headers set network shared-gateway <name> log-settings http <name> format iptag headers <name> set network shared-gateway <name> log-settings http <name> format iptag headers <name> value <value> set network shared-gateway <name> log-settings http <name> format iptag params set network shared-gateway <name> log-settings http <name> format iptag params <name> set network shared-gateway <name> log-settings http <name> format iptag params <name> value <value> set network shared-gateway <name> log-settings http <name> format iptag payload <value> set network shared-gateway <name> log-settings http <name> format decryption set network shared-gateway <name> log-settings http <name> format decryption name <value> set network shared-gateway <name> log-settings http <name> format decryption url-format <value> set network shared-gateway <name> log-settings http <name> format decryption headers set network shared-gateway <name> log-settings http <name> format decryption headers <name> set network shared-gateway <name> log-settings http <name> format decryption headers <name> value <value> set network shared-gateway <name> log-settings http <name> format decryption params set network shared-gateway <name> log-settings http <name> format decryption params <name> set network shared-gateway <name> log-settings http <name> format decryption params <name> value <value> set network shared-gateway <name> log-settings http <name> format decryption payload <value> set network shared-gateway <name> log-settings http <name> format hip-match set network shared-gateway <name> log-settings http <name> format hip-match name <value> set network shared-gateway <name> log-settings http <name> format hip-match url-format <value> set network shared-gateway <name> log-settings http <name> format hip-match headers set network shared-gateway <name> log-settings http <name> format hip-match headers <name> set network shared-gateway <name> log-settings http <name> format hip-match headers <name> value <value> set network shared-gateway <name> log-settings http <name> format hip-match params set network shared-gateway <name> log-settings http <name> format hip-match params <name> set network shared-gateway <name> log-settings http <name> format hip-match params <name> value <value> set network shared-gateway <name> log-settings http <name> format hip-match payload <value> set network shared-gateway <name> log-settings http <name> format correlation set network shared-gateway <name> log-settings http <name> format correlation name <value> set network shared-gateway <name> log-settings http <name> format correlation url-format <value> set network shared-gateway <name> log-settings http <name> format correlation headers set network shared-gateway <name> log-settings http <name> format correlation headers <name> set network shared-gateway <name> log-settings http <name> format correlation headers <name> value <value> set network shared-gateway <name> log-settings http <name> format correlation params set network shared-gateway <name> log-settings http <name> format correlation params <name> set network shared-gateway <name> log-settings http <name> format correlation params <name> value <value> set network shared-gateway <name> log-settings http <name> format correlation payload <value> set network shared-gateway <name> log-settings profiles set network shared-gateway <name> log-settings profiles <name> set network shared-gateway <name> log-settings profiles <name> description <value> set network shared-gateway <name> log-settings profiles <name> enhanced-application-logging <yes|no> set network shared-gateway <name> log-settings profiles <name> match-list set network shared-gateway <name> log-settings profiles <name> match-list <name> set network shared-gateway <name> log-settings profiles <name> match-list <name> action-desc <value> set network shared-gateway <name> log-settings profiles <name> match-list <name> log-type <traffic|threat|wildfire|url|data|tunnel|auth|decryption> set network shared-gateway <name> log-settings profiles <name> match-list <name> filter <value> set network shared-gateway <name> log-settings profiles <name> match-list <name> send-to-panorama <yes|no> set network shared-gateway <name> log-settings profiles <name> match-list <name> send-snmptrap [ <send-snmptrap1> <send-snmptrap2>... ] set network shared-gateway <name> log-settings profiles <name> match-list <name> send-email [ <send-email1> <send-email2>... ] set network shared-gateway <name> log-settings profiles <name> match-list <name> send-syslog [ <send-syslog1> <send-syslog2>... ] set network shared-gateway <name> log-settings profiles <name> match-list <name> send-http [ <send-http1> <send-http2>... ] set network shared-gateway <name> log-settings profiles <name> match-list <name> quarantine <yes|no> set network shared-gateway <name> log-settings profiles <name> match-list <name> actions set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging target <source-address|destination-address|xff-address|user> set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging action <add-tag|remove-tag> set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration localhost set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration panorama set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration remote set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration remote http-profile <value> set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging timeout <0-43200> set network shared-gateway <name> log-settings profiles <name> match-list <name> actions <name> type tagging tags [ <tags1> <tags2>... ] set network shared-gateway <name> rulebase set network shared-gateway <name> rulebase nat set network shared-gateway <name> rulebase nat rules set network shared-gateway <name> rulebase nat rules <name> set network shared-gateway <name> rulebase nat rules <name> from [ <from1> <from2>... ] set network shared-gateway <name> rulebase nat rules <name> to [ <to1> <to2>... ] set network shared-gateway <name> rulebase nat rules <name> source [ <source1> <source2>... ] set network shared-gateway <name> rulebase nat rules <name> destination [ <destination1> <destination2>... ] set network shared-gateway <name> rulebase nat rules <name> service <value> set network shared-gateway <name> rulebase nat rules <name> nat-type <ipv4|nat64|nptv6> set network shared-gateway <name> rulebase nat rules <name> to-interface <value>|<any> set network shared-gateway <name> rulebase nat rules <name> source-translation set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip-and-port set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip-and-port translated-address [ <translated-address1> <translated-address2>... ] set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address interface <value> set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address ip <value> set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address floating-ip <value> set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip translated-address [ <translated-address1> <translated-address2>... ] set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip fallback set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip fallback translated-address [ <translated-address1> <translated-address2>... ] set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address interface <value> set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address ip <value> set network shared-gateway <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address floating-ip <value> set network shared-gateway <name> rulebase nat rules <name> source-translation static-ip set network shared-gateway <name> rulebase nat rules <name> source-translation static-ip translated-address <value>|<ip/netmask>|<ip-range> set network shared-gateway <name> rulebase nat rules <name> source-translation static-ip bi-directional <yes|no> set network shared-gateway <name> rulebase nat rules <name> destination-translation set network shared-gateway <name> rulebase nat rules <name> destination-translation translated-address <value>|<ip/netmask>|<ip-range> set network shared-gateway <name> rulebase nat rules <name> destination-translation translated-port <1-65535> set network shared-gateway <name> rulebase nat rules <name> destination-translation dns-rewrite set network shared-gateway <name> rulebase nat rules <name> destination-translation dns-rewrite direction <reverse|forward> set network shared-gateway <name> rulebase nat rules <name> dynamic-destination-translation set network shared-gateway <name> rulebase nat rules <name> dynamic-destination-translation translated-address <value>|<ip/netmask>|<ip-range> set network shared-gateway <name> rulebase nat rules <name> dynamic-destination-translation translated-port <1-65535> set network shared-gateway <name> rulebase nat rules <name> dynamic-destination-translation distribution <round-robin|source-ip-hash|ip-modulo|ip-hash|least-sessions> set network shared-gateway <name> rulebase nat rules <name> active-active-device-binding <primary|both|0|1> set network shared-gateway <name> rulebase nat rules <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> rulebase nat rules <name> disabled <yes|no> set network shared-gateway <name> rulebase nat rules <name> description <value> set network shared-gateway <name> rulebase nat rules <name> group-tag <value> set network shared-gateway <name> rulebase pbf set network shared-gateway <name> rulebase pbf rules set network shared-gateway <name> rulebase pbf rules <name> set network shared-gateway <name> rulebase pbf rules <name> from set network shared-gateway <name> rulebase pbf rules <name> from zone [ <zone1> <zone2>... ] set network shared-gateway <name> rulebase pbf rules <name> from interface [ <interface1> <interface2>... ] set network shared-gateway <name> rulebase pbf rules <name> source [ <source1> <source2>... ] set network shared-gateway <name> rulebase pbf rules <name> source-user [ <source-user1> <source-user2>... ] set network shared-gateway <name> rulebase pbf rules <name> destination [ <destination1> <destination2>... ] set network shared-gateway <name> rulebase pbf rules <name> service [ <service1> <service2>... ] set network shared-gateway <name> rulebase pbf rules <name> schedule <value> set network shared-gateway <name> rulebase pbf rules <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> rulebase pbf rules <name> negate-source <yes|no> set network shared-gateway <name> rulebase pbf rules <name> negate-destination <yes|no> set network shared-gateway <name> rulebase pbf rules <name> disabled <yes|no> set network shared-gateway <name> rulebase pbf rules <name> description <value> set network shared-gateway <name> rulebase pbf rules <name> group-tag <value> set network shared-gateway <name> rulebase pbf rules <name> application [ <application1> <application2>... ] set network shared-gateway <name> rulebase pbf rules <name> action set network shared-gateway <name> rulebase pbf rules <name> action forward set network shared-gateway <name> rulebase pbf rules <name> action forward egress-interface <value> set network shared-gateway <name> rulebase pbf rules <name> action forward nexthop set network shared-gateway <name> rulebase pbf rules <name> action forward nexthop ip-address <value>|<ip/netmask> set network shared-gateway <name> rulebase pbf rules <name> action forward nexthop fqdn <value> set network shared-gateway <name> rulebase pbf rules <name> action forward monitor set network shared-gateway <name> rulebase pbf rules <name> action forward monitor profile <value> set network shared-gateway <name> rulebase pbf rules <name> action forward monitor disable-if-unreachable <yes|no> set network shared-gateway <name> rulebase pbf rules <name> action forward monitor ip-address <ip/netmask> set network shared-gateway <name> rulebase pbf rules <name> action forward-to-vsys <value> set network shared-gateway <name> rulebase pbf rules <name> action discard set network shared-gateway <name> rulebase pbf rules <name> action no-pbf set network shared-gateway <name> rulebase pbf rules <name> enforce-symmetric-return set network shared-gateway <name> rulebase pbf rules <name> enforce-symmetric-return enabled <yes|no> set network shared-gateway <name> rulebase pbf rules <name> enforce-symmetric-return nexthop-address-list set network shared-gateway <name> rulebase pbf rules <name> enforce-symmetric-return nexthop-address-list <name> set network shared-gateway <name> rulebase pbf rules <name> active-active-device-binding <both|0|1> set network shared-gateway <name> rulebase sdwan set network shared-gateway <name> rulebase sdwan rules set network shared-gateway <name> rulebase sdwan rules <name> set network shared-gateway <name> rulebase sdwan rules <name> from [ <from1> <from2>... ] set network shared-gateway <name> rulebase sdwan rules <name> to [ <to1> <to2>... ] set network shared-gateway <name> rulebase sdwan rules <name> source [ <source1> <source2>... ] set network shared-gateway <name> rulebase sdwan rules <name> source-user [ <source-user1> <source-user2>... ] set network shared-gateway <name> rulebase sdwan rules <name> destination [ <destination1> <destination2>... ] set network shared-gateway <name> rulebase sdwan rules <name> application [ <application1> <application2>... ] set network shared-gateway <name> rulebase sdwan rules <name> service [ <service1> <service2>... ] set network shared-gateway <name> rulebase sdwan rules <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> rulebase sdwan rules <name> negate-source <yes|no> set network shared-gateway <name> rulebase sdwan rules <name> negate-destination <yes|no> set network shared-gateway <name> rulebase sdwan rules <name> disabled <yes|no> set network shared-gateway <name> rulebase sdwan rules <name> description <value> set network shared-gateway <name> rulebase sdwan rules <name> group-tag <value> set network shared-gateway <name> rulebase sdwan rules <name> path-quality-profile <value> set network shared-gateway <name> rulebase sdwan rules <name> saas-quality-profile <value> set network shared-gateway <name> rulebase sdwan rules <name> error-correction-profile <value> set network shared-gateway <name> rulebase sdwan rules <name> action set network shared-gateway <name> rulebase sdwan rules <name> action traffic-distribution-profile <value> set network shared-gateway <name> rulebase sdwan rules <name> action app-failover-for-nat-sessions <keep-existing-link|failover-to-better-path> set network shared-gateway <name> rulebase network-packet-broker set network shared-gateway <name> rulebase network-packet-broker rules set network shared-gateway <name> rulebase network-packet-broker rules <name> set network shared-gateway <name> rulebase network-packet-broker rules <name> from [ <from1> <from2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> to [ <to1> <to2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> source [ <source1> <source2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> source-user [ <source-user1> <source-user2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> destination [ <destination1> <destination2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> application [ <application1> <application2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> service [ <service1> <service2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> tag [ <tag1> <tag2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> negate-source <yes|no> set network shared-gateway <name> rulebase network-packet-broker rules <name> negate-destination <yes|no> set network shared-gateway <name> rulebase network-packet-broker rules <name> disabled <yes|no> set network shared-gateway <name> rulebase network-packet-broker rules <name> description <value> set network shared-gateway <name> rulebase network-packet-broker rules <name> group-tag <value> set network shared-gateway <name> rulebase network-packet-broker rules <name> source-hip [ <source-hip1> <source-hip2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ] set network shared-gateway <name> rulebase network-packet-broker rules <name> traffic-type set network shared-gateway <name> rulebase network-packet-broker rules <name> traffic-type tls-decrypted <yes|no> set network shared-gateway <name> rulebase network-packet-broker rules <name> traffic-type tls-encrypted <yes|no> set network shared-gateway <name> rulebase network-packet-broker rules <name> traffic-type non-tls <yes|no> set network shared-gateway <name> rulebase network-packet-broker rules <name> action set network shared-gateway <name> rulebase network-packet-broker rules <name> action packet-broker-profile <value>
set shared address set shared address <name> set shared address <name> description <value> set shared address <name> ip-netmask <ip/netmask> set shared address <name> ip-range <ip-range> set shared address <name> ip-wildcard <ipdiscontmask> set shared address <name> fqdn <value> set shared address <name> tag [ <tag1> <tag2>... ] set shared address-group set shared address-group <name> set shared address-group <name> description <value> set shared address-group <name> static [ <static1> <static2>... ] set shared address-group <name> dynamic set shared address-group <name> dynamic filter <value> set shared address-group <name> tag [ <tag1> <tag2>... ] set shared application set shared application <name> set shared application <name> default set shared application <name> default port [ <port1> <port2>... ] set shared application <name> default ident-by-ip-protocol <0-255,...> set shared application <name> default ident-by-icmp-type set shared application <name> default ident-by-icmp-type type <0-255,...> set shared application <name> default ident-by-icmp-type code <0-255,...> set shared application <name> default ident-by-icmp6-type set shared application <name> default ident-by-icmp6-type type <0-255,...> set shared application <name> default ident-by-icmp6-type code <0-255,...> set shared application <name> category <value> set shared application <name> subcategory <value> set shared application <name> technology <value> set shared application <name> description <value> set shared application <name> timeout <0-604800> set shared application <name> tcp-timeout <0-604800> set shared application <name> udp-timeout <0-604800> set shared application <name> tcp-half-closed-timeout <1-604800> set shared application <name> tcp-time-wait-timeout <1-600> set shared application <name> risk <1-5> set shared application <name> evasive-behavior <yes|no> set shared application <name> consume-big-bandwidth <yes|no> set shared application <name> used-by-malware <yes|no> set shared application <name> able-to-transfer-file <yes|no> set shared application <name> has-known-vulnerability <yes|no> set shared application <name> tunnel-other-application <yes|no> set shared application <name> tunnel-applications <yes|no> set shared application <name> prone-to-misuse <yes|no> set shared application <name> pervasive-use <yes|no> set shared application <name> file-type-ident <yes|no> set shared application <name> virus-ident <yes|no> set shared application <name> data-ident <yes|no> set shared application <name> no-appid-caching <yes|no> set shared application <name> alg-disable-capability <value> set shared application <name> parent-app <value> set shared application <name> signature set shared application <name> signature <name> set shared application <name> signature <name> comment <value> set shared application <name> signature <name> scope <protocol-data-unit|session> set shared application <name> signature <name> order-free <yes|no> set shared application <name> signature <name> and-condition set shared application <name> signature <name> and-condition <name> set shared application <name> signature <name> and-condition <name> or-condition set shared application <name> signature <name> and-condition <name> or-condition <name> set shared application <name> signature <name> and-condition <name> or-condition <name> operator set shared application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match set shared application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match context <value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match pattern <value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier set shared application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> set shared application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator greater-than set shared application <name> signature <name> and-condition <name> or-condition <name> operator greater-than context <value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295> set shared application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier set shared application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> set shared application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator less-than set shared application <name> signature <name> and-condition <name> or-condition <name> operator less-than context <value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295> set shared application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier set shared application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier <name> set shared application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator equal-to set shared application <name> signature <name> and-condition <name> or-condition <name> operator equal-to context <value>|<unknown-req-tcp|unknown-rsp-tcp|unknown-req-udp|unknown-rsp-udp> set shared application <name> signature <name> and-condition <name> or-condition <name> operator equal-to position <value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator equal-to mask <value> set shared application <name> signature <name> and-condition <name> or-condition <name> operator equal-to value <value> set shared application-filter set shared application-filter <name> set shared application-filter <name> category [ <category1> <category2>... ] set shared application-filter <name> subcategory [ <subcategory1> <subcategory2>... ] set shared application-filter <name> technology [ <technology1> <technology2>... ] set shared application-filter <name> evasive <yes> set shared application-filter <name> excessive-bandwidth-use <yes> set shared application-filter <name> used-by-malware <yes> set shared application-filter <name> transfers-files <yes> set shared application-filter <name> has-known-vulnerabilities <yes> set shared application-filter <name> tunnels-other-apps <yes> set shared application-filter <name> prone-to-misuse <yes> set shared application-filter <name> pervasive <yes> set shared application-filter <name> is-saas <yes> set shared application-filter <name> new-appid <yes> set shared application-filter <name> risk [ <risk1> <risk2>... ] set shared application-filter <name> saas-certifications [ <saas-certifications1> <saas-certifications2>... ] set shared application-filter <name> saas-risk [ <saas-risk1> <saas-risk2>... ] set shared application-filter <name> tagging set shared application-filter <name> tagging no-tag <yes> set shared application-filter <name> tagging tag [ <tag1> <tag2>... ] set shared application-filter <name> exclude [ <exclude1> <exclude2>... ] set shared application-group set shared application-group <name> set shared application-group <name> members [ <members1> <members2>... ]
set shared service set shared service <name> set shared service <name> description <value> set shared service <name> protocol set shared service <name> protocol tcp set shared service <name> protocol tcp port <0-65535,...> set shared service <name> protocol tcp source-port <0-65535,...> set shared service <name> protocol tcp override set shared service <name> protocol tcp override no set shared service <name> protocol tcp override yes set shared service <name> protocol tcp override yes timeout <1-604800> set shared service <name> protocol tcp override yes halfclose-timeout <1-604800> set shared service <name> protocol tcp override yes timewait-timeout <1-600> set shared service <name> protocol udp set shared service <name> protocol udp port <0-65535,...> set shared service <name> protocol udp source-port <0-65535,...> set shared service <name> protocol udp override set shared service <name> protocol udp override no set shared service <name> protocol udp override yes set shared service <name> protocol udp override yes timeout <1-604800> set shared service <name> tag [ <tag1> <tag2>... ] set shared service-group set shared service-group <name> set shared service-group <name> members [ <members1> <members2>... ] set shared service-group <name> tag [ <tag1> <tag2>... ] set shared device-object set shared device-object <name> set shared device-object <name> description <value> set shared device-object <name> category [ <category1> <category2>... ] set shared device-object <name> profile [ <profile1> <profile2>... ] set shared device-object <name> osfamily [ <osfamily1> <osfamily2>... ] set shared device-object <name> os [ <os1> <os2>... ] set shared device-object <name> model [ <model1> <model2>... ] set shared device-object <name> vendor [ <vendor1> <vendor2>... ]
set shared profiles set shared profiles hip-objects set shared profiles hip-objects <name> set shared profiles hip-objects <name> description <value> set shared profiles hip-objects <name> host-info set shared profiles hip-objects <name> host-info criteria set shared profiles hip-objects <name> host-info criteria domain set shared profiles hip-objects <name> host-info criteria domain contains <value> set shared profiles hip-objects <name> host-info criteria domain is <value> set shared profiles hip-objects <name> host-info criteria domain is-not <value> set shared profiles hip-objects <name> host-info criteria os set shared profiles hip-objects <name> host-info criteria os contains set shared profiles hip-objects <name> host-info criteria os contains Microsoft <value> set shared profiles hip-objects <name> host-info criteria os contains Apple <value> set shared profiles hip-objects <name> host-info criteria os contains Google <value> set shared profiles hip-objects <name> host-info criteria os contains Linux <value> set shared profiles hip-objects <name> host-info criteria os contains Other <value> set shared profiles hip-objects <name> host-info criteria client-version set shared profiles hip-objects <name> host-info criteria client-version contains <value> set shared profiles hip-objects <name> host-info criteria client-version is <value> set shared profiles hip-objects <name> host-info criteria client-version is-not <value> set shared profiles hip-objects <name> host-info criteria host-name set shared profiles hip-objects <name> host-info criteria host-name contains <value> set shared profiles hip-objects <name> host-info criteria host-name is <value> set shared profiles hip-objects <name> host-info criteria host-name is-not <value> set shared profiles hip-objects <name> host-info criteria host-id set shared profiles hip-objects <name> host-info criteria host-id contains <value> set shared profiles hip-objects <name> host-info criteria host-id is <value> set shared profiles hip-objects <name> host-info criteria host-id is-not <value> set shared profiles hip-objects <name> host-info criteria managed <no|yes> set shared profiles hip-objects <name> host-info criteria serial-number set shared profiles hip-objects <name> host-info criteria serial-number contains <value> set shared profiles hip-objects <name> host-info criteria serial-number is <value> set shared profiles hip-objects <name> host-info criteria serial-number is-not <value> set shared profiles hip-objects <name> network-info set shared profiles hip-objects <name> network-info criteria set shared profiles hip-objects <name> network-info criteria network set shared profiles hip-objects <name> network-info criteria network is set shared profiles hip-objects <name> network-info criteria network is wifi set shared profiles hip-objects <name> network-info criteria network is wifi ssid <value> set shared profiles hip-objects <name> network-info criteria network is mobile set shared profiles hip-objects <name> network-info criteria network is mobile carrier <value> set shared profiles hip-objects <name> network-info criteria network is unknown set shared profiles hip-objects <name> network-info criteria network is-not set shared profiles hip-objects <name> network-info criteria network is-not wifi set shared profiles hip-objects <name> network-info criteria network is-not wifi ssid <value> set shared profiles hip-objects <name> network-info criteria network is-not mobile set shared profiles hip-objects <name> network-info criteria network is-not mobile carrier <value> set shared profiles hip-objects <name> network-info criteria network is-not ethernet set shared profiles hip-objects <name> network-info criteria network is-not unknown set shared profiles hip-objects <name> patch-management set shared profiles hip-objects <name> patch-management criteria set shared profiles hip-objects <name> patch-management criteria is-installed <yes|no> set shared profiles hip-objects <name> patch-management criteria is-enabled <no|yes|not-available> set shared profiles hip-objects <name> patch-management criteria missing-patches set shared profiles hip-objects <name> patch-management criteria missing-patches severity set shared profiles hip-objects <name> patch-management criteria missing-patches severity greater-equal <0-100000> set shared profiles hip-objects <name> patch-management criteria missing-patches severity greater-than <0-100000> set shared profiles hip-objects <name> patch-management criteria missing-patches severity is <0-100000> set shared profiles hip-objects <name> patch-management criteria missing-patches severity is-not <0-100000> set shared profiles hip-objects <name> patch-management criteria missing-patches severity less-equal <0-100000> set shared profiles hip-objects <name> patch-management criteria missing-patches severity less-than <0-100000> set shared profiles hip-objects <name> patch-management criteria missing-patches patches [ <patches1> <patches2>... ] set shared profiles hip-objects <name> patch-management criteria missing-patches check <has-any|has-none|has-all> set shared profiles hip-objects <name> patch-management vendor set shared profiles hip-objects <name> patch-management vendor <name> set shared profiles hip-objects <name> patch-management vendor <name> product [ <product1> <product2>... ] set shared profiles hip-objects <name> patch-management exclude-vendor <yes|no> set shared profiles hip-objects <name> data-loss-prevention set shared profiles hip-objects <name> data-loss-prevention criteria set shared profiles hip-objects <name> data-loss-prevention criteria is-installed <yes|no> set shared profiles hip-objects <name> data-loss-prevention criteria is-enabled <no|yes|not-available> set shared profiles hip-objects <name> data-loss-prevention vendor set shared profiles hip-objects <name> data-loss-prevention vendor <name> set shared profiles hip-objects <name> data-loss-prevention vendor <name> product [ <product1> <product2>... ] set shared profiles hip-objects <name> data-loss-prevention exclude-vendor <yes|no> set shared profiles hip-objects <name> firewall set shared profiles hip-objects <name> firewall criteria set shared profiles hip-objects <name> firewall criteria is-installed <yes|no> set shared profiles hip-objects <name> firewall criteria is-enabled <no|yes|not-available> set shared profiles hip-objects <name> firewall vendor set shared profiles hip-objects <name> firewall vendor <name> set shared profiles hip-objects <name> firewall vendor <name> product [ <product1> <product2>... ] set shared profiles hip-objects <name> firewall exclude-vendor <yes|no> set shared profiles hip-objects <name> anti-malware set shared profiles hip-objects <name> anti-malware criteria set shared profiles hip-objects <name> anti-malware criteria virdef-version set shared profiles hip-objects <name> anti-malware criteria virdef-version within set shared profiles hip-objects <name> anti-malware criteria virdef-version within days <1-65535> set shared profiles hip-objects <name> anti-malware criteria virdef-version within versions <1-65535> set shared profiles hip-objects <name> anti-malware criteria virdef-version not-within set shared profiles hip-objects <name> anti-malware criteria virdef-version not-within days <1-65535> set shared profiles hip-objects <name> anti-malware criteria virdef-version not-within versions <1-65535> set shared profiles hip-objects <name> anti-malware criteria product-version set shared profiles hip-objects <name> anti-malware criteria product-version greater-equal <value> set shared profiles hip-objects <name> anti-malware criteria product-version greater-than <value> set shared profiles hip-objects <name> anti-malware criteria product-version is <value> set shared profiles hip-objects <name> anti-malware criteria product-version is-not <value> set shared profiles hip-objects <name> anti-malware criteria product-version less-equal <value> set shared profiles hip-objects <name> anti-malware criteria product-version less-than <value> set shared profiles hip-objects <name> anti-malware criteria product-version contains <value> set shared profiles hip-objects <name> anti-malware criteria product-version within set shared profiles hip-objects <name> anti-malware criteria product-version within versions <1-1> set shared profiles hip-objects <name> anti-malware criteria product-version not-within set shared profiles hip-objects <name> anti-malware criteria product-version not-within versions <1-1> set shared profiles hip-objects <name> anti-malware criteria is-installed <yes|no> set shared profiles hip-objects <name> anti-malware criteria real-time-protection <no|yes|not-available> set shared profiles hip-objects <name> anti-malware criteria last-scan-time set shared profiles hip-objects <name> anti-malware criteria last-scan-time not-available set shared profiles hip-objects <name> anti-malware criteria last-scan-time within set shared profiles hip-objects <name> anti-malware criteria last-scan-time within days <1-65535> set shared profiles hip-objects <name> anti-malware criteria last-scan-time within hours <1-65535> set shared profiles hip-objects <name> anti-malware criteria last-scan-time not-within set shared profiles hip-objects <name> anti-malware criteria last-scan-time not-within days <1-65535> set shared profiles hip-objects <name> anti-malware criteria last-scan-time not-within hours <1-65535> set shared profiles hip-objects <name> anti-malware vendor set shared profiles hip-objects <name> anti-malware vendor <name> set shared profiles hip-objects <name> anti-malware vendor <name> product [ <product1> <product2>... ] set shared profiles hip-objects <name> anti-malware exclude-vendor <yes|no> set shared profiles hip-objects <name> disk-backup set shared profiles hip-objects <name> disk-backup criteria set shared profiles hip-objects <name> disk-backup criteria is-installed <yes|no> set shared profiles hip-objects <name> disk-backup criteria last-backup-time set shared profiles hip-objects <name> disk-backup criteria last-backup-time not-available set shared profiles hip-objects <name> disk-backup criteria last-backup-time within set shared profiles hip-objects <name> disk-backup criteria last-backup-time within days <1-65535> set shared profiles hip-objects <name> disk-backup criteria last-backup-time within hours <1-65535> set shared profiles hip-objects <name> disk-backup criteria last-backup-time not-within set shared profiles hip-objects <name> disk-backup criteria last-backup-time not-within days <1-65535> set shared profiles hip-objects <name> disk-backup criteria last-backup-time not-within hours <1-65535> set shared profiles hip-objects <name> disk-backup vendor set shared profiles hip-objects <name> disk-backup vendor <name> set shared profiles hip-objects <name> disk-backup vendor <name> product [ <product1> <product2>... ] set shared profiles hip-objects <name> disk-backup exclude-vendor <yes|no> set shared profiles hip-objects <name> disk-encryption set shared profiles hip-objects <name> disk-encryption criteria set shared profiles hip-objects <name> disk-encryption criteria is-installed <yes|no> set shared profiles hip-objects <name> disk-encryption criteria encrypted-locations set shared profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> set shared profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> encryption-state set shared profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> encryption-state is <encrypted|unencrypted|partial|unknown> set shared profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> encryption-state is-not <encrypted|unencrypted|partial|unknown> set shared profiles hip-objects <name> disk-encryption vendor set shared profiles hip-objects <name> disk-encryption vendor <name> set shared profiles hip-objects <name> disk-encryption vendor <name> product [ <product1> <product2>... ] set shared profiles hip-objects <name> disk-encryption exclude-vendor <yes|no> set shared profiles hip-objects <name> custom-checks set shared profiles hip-objects <name> custom-checks criteria set shared profiles hip-objects <name> custom-checks criteria process-list set shared profiles hip-objects <name> custom-checks criteria process-list <name> set shared profiles hip-objects <name> custom-checks criteria process-list <name> running <yes|no> set shared profiles hip-objects <name> custom-checks criteria registry-key set shared profiles hip-objects <name> custom-checks criteria registry-key <name> set shared profiles hip-objects <name> custom-checks criteria registry-key <name> default-value-data <value> set shared profiles hip-objects <name> custom-checks criteria registry-key <name> negate <yes|no> set shared profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value set shared profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value <name> set shared profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value <name> value-data <value> set shared profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value <name> negate <yes|no> set shared profiles hip-objects <name> custom-checks criteria plist set shared profiles hip-objects <name> custom-checks criteria plist <name> set shared profiles hip-objects <name> custom-checks criteria plist <name> negate <yes|no> set shared profiles hip-objects <name> custom-checks criteria plist <name> key set shared profiles hip-objects <name> custom-checks criteria plist <name> key <name> set shared profiles hip-objects <name> custom-checks criteria plist <name> key <name> value <value> set shared profiles hip-objects <name> custom-checks criteria plist <name> key <name> negate <yes|no> set shared profiles hip-objects <name> mobile-device set shared profiles hip-objects <name> mobile-device criteria set shared profiles hip-objects <name> mobile-device criteria jailbroken <no|yes> set shared profiles hip-objects <name> mobile-device criteria disk-encrypted <no|yes> set shared profiles hip-objects <name> mobile-device criteria passcode-set <no|yes> set shared profiles hip-objects <name> mobile-device criteria last-checkin-time set shared profiles hip-objects <name> mobile-device criteria last-checkin-time within set shared profiles hip-objects <name> mobile-device criteria last-checkin-time within days <1-365> set shared profiles hip-objects <name> mobile-device criteria last-checkin-time not-within set shared profiles hip-objects <name> mobile-device criteria last-checkin-time not-within days <1-365> set shared profiles hip-objects <name> mobile-device criteria imei set shared profiles hip-objects <name> mobile-device criteria imei contains <value> set shared profiles hip-objects <name> mobile-device criteria imei is <value> set shared profiles hip-objects <name> mobile-device criteria imei is-not <value> set shared profiles hip-objects <name> mobile-device criteria model set shared profiles hip-objects <name> mobile-device criteria model contains <value> set shared profiles hip-objects <name> mobile-device criteria model is <value> set shared profiles hip-objects <name> mobile-device criteria model is-not <value> set shared profiles hip-objects <name> mobile-device criteria phone-number set shared profiles hip-objects <name> mobile-device criteria phone-number contains <value> set shared profiles hip-objects <name> mobile-device criteria phone-number is <value> set shared profiles hip-objects <name> mobile-device criteria phone-number is-not <value> set shared profiles hip-objects <name> mobile-device criteria tag set shared profiles hip-objects <name> mobile-device criteria tag contains <value> set shared profiles hip-objects <name> mobile-device criteria tag is <value> set shared profiles hip-objects <name> mobile-device criteria tag is-not <value> set shared profiles hip-objects <name> mobile-device criteria applications set shared profiles hip-objects <name> mobile-device criteria applications has-malware set shared profiles hip-objects <name> mobile-device criteria applications has-malware no set shared profiles hip-objects <name> mobile-device criteria applications has-malware yes set shared profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes set shared profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes <name> set shared profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes <name> package <value> set shared profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes <name> hash <value> set shared profiles hip-objects <name> mobile-device criteria applications has-unmanaged-app <no|yes> set shared profiles hip-objects <name> mobile-device criteria applications includes set shared profiles hip-objects <name> mobile-device criteria applications includes <name> set shared profiles hip-objects <name> mobile-device criteria applications includes <name> package <value> set shared profiles hip-objects <name> mobile-device criteria applications includes <name> hash <value> set shared profiles hip-objects <name> certificate set shared profiles hip-objects <name> certificate criteria set shared profiles hip-objects <name> certificate criteria certificate-profile <value> set shared profiles hip-objects <name> certificate criteria certificate-attributes set shared profiles hip-objects <name> certificate criteria certificate-attributes <name> set shared profiles hip-objects <name> certificate criteria certificate-attributes <name> value <value>
set shared profiles virus set shared profiles virus <name> set shared profiles virus <name> description <value> set shared profiles virus <name> packet-capture <yes|no> set shared profiles virus <name> mlav-engine-filebased-enabled set shared profiles virus <name> mlav-engine-filebased-enabled <name> set shared profiles virus <name> mlav-engine-filebased-enabled <name> mlav-policy-action <enable|enable(alert-only)|disable> set shared profiles virus <name> decoder set shared profiles virus <name> decoder <name> set shared profiles virus <name> decoder <name> action <default|allow|alert|drop|reset-client|reset-server|reset-both> set shared profiles virus <name> decoder <name> wildfire-action <default|allow|alert|drop|reset-client|reset-server|reset-both> set shared profiles virus <name> decoder <name> mlav-action <default|allow|alert|drop|reset-client|reset-server|reset-both> set shared profiles virus <name> application set shared profiles virus <name> application <name> set shared profiles virus <name> application <name> action <default|allow|alert|drop|reset-client|reset-server|reset-both> set shared profiles virus <name> threat-exception set shared profiles virus <name> threat-exception <name> set shared profiles virus <name> mlav-exception set shared profiles virus <name> mlav-exception <name> set shared profiles virus <name> mlav-exception <name> filename <value> set shared profiles virus <name> mlav-exception <name> description <value> set shared profiles spyware set shared profiles spyware <name> set shared profiles spyware <name> description <value> set shared profiles spyware <name> botnet-domains set shared profiles spyware <name> botnet-domains lists set shared profiles spyware <name> botnet-domains lists <name> set shared profiles spyware <name> botnet-domains lists <name> action set shared profiles spyware <name> botnet-domains lists <name> action alert set shared profiles spyware <name> botnet-domains lists <name> action allow set shared profiles spyware <name> botnet-domains lists <name> action block set shared profiles spyware <name> botnet-domains lists <name> action sinkhole set shared profiles spyware <name> botnet-domains lists <name> packet-capture <disable|single-packet|extended-capture> set shared profiles spyware <name> botnet-domains dns-security-categories set shared profiles spyware <name> botnet-domains dns-security-categories <name> set shared profiles spyware <name> botnet-domains dns-security-categories <name> action <default|allow|block|sinkhole> set shared profiles spyware <name> botnet-domains dns-security-categories <name> log-level <default|none|low|informational|medium|high|critical> set shared profiles spyware <name> botnet-domains dns-security-categories <name> packet-capture <disable|single-packet|extended-capture> set shared profiles spyware <name> botnet-domains whitelist set shared profiles spyware <name> botnet-domains whitelist <name> set shared profiles spyware <name> botnet-domains whitelist <name> description <value> set shared profiles spyware <name> botnet-domains sinkhole set shared profiles spyware <name> botnet-domains sinkhole ipv4-address <value>|<127.0.0.1|pan-sinkhole-default-ip> set shared profiles spyware <name> botnet-domains sinkhole ipv6-address <ip/netmask>|<::1> set shared profiles spyware <name> botnet-domains threat-exception set shared profiles spyware <name> botnet-domains threat-exception <name> set shared profiles spyware <name> rules set shared profiles spyware <name> rules <name> set shared profiles spyware <name> rules <name> threat-name <value>|<any> set shared profiles spyware <name> rules <name> category <value>|<any> set shared profiles spyware <name> rules <name> severity [ <severity1> <severity2>... ] set shared profiles spyware <name> rules <name> action set shared profiles spyware <name> rules <name> action default set shared profiles spyware <name> rules <name> action allow set shared profiles spyware <name> rules <name> action alert set shared profiles spyware <name> rules <name> action drop set shared profiles spyware <name> rules <name> action reset-client set shared profiles spyware <name> rules <name> action reset-server set shared profiles spyware <name> rules <name> action reset-both set shared profiles spyware <name> rules <name> action block-ip set shared profiles spyware <name> rules <name> action block-ip track-by <source|source-and-destination> set shared profiles spyware <name> rules <name> action block-ip duration <1-3600> set shared profiles spyware <name> rules <name> packet-capture <disable|single-packet|extended-capture> set shared profiles spyware <name> threat-exception set shared profiles spyware <name> threat-exception <name> set shared profiles spyware <name> threat-exception <name> packet-capture <disable|single-packet|extended-capture> set shared profiles spyware <name> threat-exception <name> action set shared profiles spyware <name> threat-exception <name> action default set shared profiles spyware <name> threat-exception <name> action allow set shared profiles spyware <name> threat-exception <name> action alert set shared profiles spyware <name> threat-exception <name> action drop set shared profiles spyware <name> threat-exception <name> action reset-both set shared profiles spyware <name> threat-exception <name> action reset-client set shared profiles spyware <name> threat-exception <name> action reset-server set shared profiles spyware <name> threat-exception <name> action block-ip set shared profiles spyware <name> threat-exception <name> action block-ip track-by <source|source-and-destination> set shared profiles spyware <name> threat-exception <name> action block-ip duration <1-3600> set shared profiles spyware <name> threat-exception <name> exempt-ip set shared profiles spyware <name> threat-exception <name> exempt-ip <name> set shared profiles vulnerability set shared profiles vulnerability <name> set shared profiles vulnerability <name> description <value> set shared profiles vulnerability <name> rules set shared profiles vulnerability <name> rules <name> set shared profiles vulnerability <name> rules <name> threat-name <value>|<any> set shared profiles vulnerability <name> rules <name> cve [ <cve1> <cve2>... ] set shared profiles vulnerability <name> rules <name> host <any|client|server> set shared profiles vulnerability <name> rules <name> vendor-id [ <vendor-id1> <vendor-id2>... ] set shared profiles vulnerability <name> rules <name> severity [ <severity1> <severity2>... ] set shared profiles vulnerability <name> rules <name> category <value>|<any> set shared profiles vulnerability <name> rules <name> action set shared profiles vulnerability <name> rules <name> action default set shared profiles vulnerability <name> rules <name> action allow set shared profiles vulnerability <name> rules <name> action alert set shared profiles vulnerability <name> rules <name> action drop set shared profiles vulnerability <name> rules <name> action reset-client set shared profiles vulnerability <name> rules <name> action reset-server set shared profiles vulnerability <name> rules <name> action reset-both set shared profiles vulnerability <name> rules <name> action block-ip set shared profiles vulnerability <name> rules <name> action block-ip track-by <source|source-and-destination> set shared profiles vulnerability <name> rules <name> action block-ip duration <1-3600> set shared profiles vulnerability <name> rules <name> packet-capture <disable|single-packet|extended-capture> set shared profiles vulnerability <name> threat-exception set shared profiles vulnerability <name> threat-exception <name> set shared profiles vulnerability <name> threat-exception <name> packet-capture <disable|single-packet|extended-capture> set shared profiles vulnerability <name> threat-exception <name> action set shared profiles vulnerability <name> threat-exception <name> action default set shared profiles vulnerability <name> threat-exception <name> action allow set shared profiles vulnerability <name> threat-exception <name> action alert set shared profiles vulnerability <name> threat-exception <name> action drop set shared profiles vulnerability <name> threat-exception <name> action reset-client set shared profiles vulnerability <name> threat-exception <name> action reset-server set shared profiles vulnerability <name> threat-exception <name> action reset-both set shared profiles vulnerability <name> threat-exception <name> action block-ip set shared profiles vulnerability <name> threat-exception <name> action block-ip track-by <source|source-and-destination> set shared profiles vulnerability <name> threat-exception <name> action block-ip duration <1-3600> set shared profiles vulnerability <name> threat-exception <name> time-attribute set shared profiles vulnerability <name> threat-exception <name> time-attribute interval <1-3600> set shared profiles vulnerability <name> threat-exception <name> time-attribute threshold <1-65535> set shared profiles vulnerability <name> threat-exception <name> time-attribute track-by <source|destination|source-and-destination> set shared profiles vulnerability <name> threat-exception <name> exempt-ip set shared profiles vulnerability <name> threat-exception <name> exempt-ip <name>
set shared profiles url-filtering set shared profiles url-filtering <name> set shared profiles url-filtering <name> description <value> set shared profiles url-filtering <name> allow [ <allow1> <allow2>... ] set shared profiles url-filtering <name> alert [ <alert1> <alert2>... ] set shared profiles url-filtering <name> block [ <block1> <block2>... ] set shared profiles url-filtering <name> continue [ <continue1> <continue2>... ] set shared profiles url-filtering <name> override [ <override1> <override2>... ] set shared profiles url-filtering <name> credential-enforcement set shared profiles url-filtering <name> credential-enforcement mode set shared profiles url-filtering <name> credential-enforcement mode disabled set shared profiles url-filtering <name> credential-enforcement mode ip-user set shared profiles url-filtering <name> credential-enforcement mode domain-credentials set shared profiles url-filtering <name> credential-enforcement mode group-mapping <value> set shared profiles url-filtering <name> credential-enforcement log-severity <value> set shared profiles url-filtering <name> credential-enforcement allow [ <allow1> <allow2>... ] set shared profiles url-filtering <name> credential-enforcement alert [ <alert1> <alert2>... ] set shared profiles url-filtering <name> credential-enforcement block [ <block1> <block2>... ] set shared profiles url-filtering <name> credential-enforcement continue [ <continue1> <continue2>... ] set shared profiles url-filtering <name> enable-container-page <yes|no> set shared profiles url-filtering <name> log-container-page-only <yes|no> set shared profiles url-filtering <name> safe-search-enforcement <yes|no> set shared profiles url-filtering <name> log-http-hdr-xff <yes|no> set shared profiles url-filtering <name> log-http-hdr-user-agent <yes|no> set shared profiles url-filtering <name> log-http-hdr-referer <yes|no> set shared profiles url-filtering <name> http-header-insertion set shared profiles url-filtering <name> http-header-insertion <name> set shared profiles url-filtering <name> http-header-insertion <name> type set shared profiles url-filtering <name> http-header-insertion <name> type <name> set shared profiles url-filtering <name> http-header-insertion <name> type <name> headers set shared profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> set shared profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> header <value> set shared profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> value <value> set shared profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> log <yes|no> set shared profiles url-filtering <name> http-header-insertion <name> type <name> domains [ <domains1> <domains2>... ] set shared profiles url-filtering <name> mlav-category-exception [ <mlav-category-exception1> <mlav-category-exception2>... ] set shared profiles url-filtering <name> mlav-engine-urlbased-enabled set shared profiles url-filtering <name> mlav-engine-urlbased-enabled <name> set shared profiles url-filtering <name> mlav-engine-urlbased-enabled <name> mlav-policy-action <block|alert|allow>
set shared profiles file-blocking set shared profiles file-blocking <name> set shared profiles file-blocking <name> description <value> set shared profiles file-blocking <name> rules set shared profiles file-blocking <name> rules <name> set shared profiles file-blocking <name> rules <name> application [ <application1> <application2>... ] set shared profiles file-blocking <name> rules <name> file-type [ <file-type1> <file-type2>... ] set shared profiles file-blocking <name> rules <name> direction <upload|download|both> set shared profiles file-blocking <name> rules <name> action <alert|block|continue> set shared profiles wildfire-analysis set shared profiles wildfire-analysis <name> set shared profiles wildfire-analysis <name> description <value> set shared profiles wildfire-analysis <name> rules set shared profiles wildfire-analysis <name> rules <name> set shared profiles wildfire-analysis <name> rules <name> application [ <application1> <application2>... ] set shared profiles wildfire-analysis <name> rules <name> file-type [ <file-type1> <file-type2>... ] set shared profiles wildfire-analysis <name> rules <name> direction <upload|download|both> set shared profiles wildfire-analysis <name> rules <name> analysis <public-cloud|private-cloud> set shared profiles custom-url-category set shared profiles custom-url-category <name> set shared profiles custom-url-category <name> description <value> set shared profiles custom-url-category <name> list [ <list1> <list2>... ] set shared profiles custom-url-category <name> type <value> set shared profiles data-objects set shared profiles data-objects <name> set shared profiles data-objects <name> description <value> set shared profiles data-objects <name> pattern-type set shared profiles data-objects <name> pattern-type predefined set shared profiles data-objects <name> pattern-type predefined pattern set shared profiles data-objects <name> pattern-type predefined pattern <name> set shared profiles data-objects <name> pattern-type predefined pattern <name> file-type [ <file-type1> <file-type2>... ] set shared profiles data-objects <name> pattern-type regex set shared profiles data-objects <name> pattern-type regex pattern set shared profiles data-objects <name> pattern-type regex pattern <name> set shared profiles data-objects <name> pattern-type regex pattern <name> file-type [ <file-type1> <file-type2>... ] set shared profiles data-objects <name> pattern-type regex pattern <name> regex <value> set shared profiles data-objects <name> pattern-type file-properties set shared profiles data-objects <name> pattern-type file-properties pattern set shared profiles data-objects <name> pattern-type file-properties pattern <name> set shared profiles data-objects <name> pattern-type file-properties pattern <name> file-type <value> set shared profiles data-objects <name> pattern-type file-properties pattern <name> file-property <value> set shared profiles data-objects <name> pattern-type file-properties pattern <name> property-value <value> set shared profiles data-filtering set shared profiles data-filtering <name> set shared profiles data-filtering <name> description <value> set shared profiles data-filtering <name> data-capture <yes|no> set shared profiles data-filtering <name> rules set shared profiles data-filtering <name> rules <name> set shared profiles data-filtering <name> rules <name> data-object <value> set shared profiles data-filtering <name> rules <name> application [ <application1> <application2>... ] set shared profiles data-filtering <name> rules <name> file-type [ <file-type1> <file-type2>... ] set shared profiles data-filtering <name> rules <name> direction <upload|download|both> set shared profiles data-filtering <name> rules <name> alert-threshold <0-65535> set shared profiles data-filtering <name> rules <name> block-threshold <0-65535> set shared profiles data-filtering <name> rules <name> log-severity <value>
set shared profiles hip-profiles set shared profiles hip-profiles <name> set shared profiles hip-profiles <name> description <value> set shared profiles hip-profiles <name> match <value> set shared profiles dos-protection set shared profiles dos-protection <name> set shared profiles dos-protection <name> type <aggregate|classified> set shared profiles dos-protection <name> description <value> set shared profiles dos-protection <name> flood set shared profiles dos-protection <name> flood tcp-syn set shared profiles dos-protection <name> flood tcp-syn enable <yes|no> set shared profiles dos-protection <name> flood tcp-syn red set shared profiles dos-protection <name> flood tcp-syn red alarm-rate <0-2000000> set shared profiles dos-protection <name> flood tcp-syn red activate-rate <1-2000000> set shared profiles dos-protection <name> flood tcp-syn red maximal-rate <1-2000000> set shared profiles dos-protection <name> flood tcp-syn red block set shared profiles dos-protection <name> flood tcp-syn red block duration <1-21600> set shared profiles dos-protection <name> flood tcp-syn syn-cookies set shared profiles dos-protection <name> flood tcp-syn syn-cookies alarm-rate <0-2000000> set shared profiles dos-protection <name> flood tcp-syn syn-cookies activate-rate <0-2000000> set shared profiles dos-protection <name> flood tcp-syn syn-cookies maximal-rate <1-2000000> set shared profiles dos-protection <name> flood tcp-syn syn-cookies block set shared profiles dos-protection <name> flood tcp-syn syn-cookies block duration <1-21600> set shared profiles dos-protection <name> flood udp set shared profiles dos-protection <name> flood udp enable <yes|no> set shared profiles dos-protection <name> flood udp red set shared profiles dos-protection <name> flood udp red alarm-rate <0-2000000> set shared profiles dos-protection <name> flood udp red activate-rate <1-2000000> set shared profiles dos-protection <name> flood udp red maximal-rate <1-2000000> set shared profiles dos-protection <name> flood udp red block set shared profiles dos-protection <name> flood udp red block duration <1-21600> set shared profiles dos-protection <name> flood icmp set shared profiles dos-protection <name> flood icmp enable <yes|no> set shared profiles dos-protection <name> flood icmp red set shared profiles dos-protection <name> flood icmp red alarm-rate <0-2000000> set shared profiles dos-protection <name> flood icmp red activate-rate <1-2000000> set shared profiles dos-protection <name> flood icmp red maximal-rate <1-2000000> set shared profiles dos-protection <name> flood icmp red block set shared profiles dos-protection <name> flood icmp red block duration <1-21600> set shared profiles dos-protection <name> flood icmpv6 set shared profiles dos-protection <name> flood icmpv6 enable <yes|no> set shared profiles dos-protection <name> flood icmpv6 red set shared profiles dos-protection <name> flood icmpv6 red alarm-rate <0-2000000> set shared profiles dos-protection <name> flood icmpv6 red activate-rate <1-2000000> set shared profiles dos-protection <name> flood icmpv6 red maximal-rate <1-2000000> set shared profiles dos-protection <name> flood icmpv6 red block set shared profiles dos-protection <name> flood icmpv6 red block duration <1-21600> set shared profiles dos-protection <name> flood other-ip set shared profiles dos-protection <name> flood other-ip enable <yes|no> set shared profiles dos-protection <name> flood other-ip red set shared profiles dos-protection <name> flood other-ip red alarm-rate <0-2000000> set shared profiles dos-protection <name> flood other-ip red activate-rate <1-2000000> set shared profiles dos-protection <name> flood other-ip red maximal-rate <1-2000000> set shared profiles dos-protection <name> flood other-ip red block set shared profiles dos-protection <name> flood other-ip red block duration <1-21600> set shared profiles dos-protection <name> resource set shared profiles dos-protection <name> resource sessions set shared profiles dos-protection <name> resource sessions enabled <yes|no> set shared profiles dos-protection <name> resource sessions max-concurrent-limit <1-4194304>
set shared profiles sdwan-path-quality set shared profiles sdwan-path-quality <name> set shared profiles sdwan-path-quality <name> metric set shared profiles sdwan-path-quality <name> metric latency set shared profiles sdwan-path-quality <name> metric latency threshold <10-3000> set shared profiles sdwan-path-quality <name> metric latency sensitivity <low|medium|high> set shared profiles sdwan-path-quality <name> metric pkt-loss set shared profiles sdwan-path-quality <name> metric pkt-loss threshold <1-100> set shared profiles sdwan-path-quality <name> metric pkt-loss sensitivity <low|medium|high> set shared profiles sdwan-path-quality <name> metric jitter set shared profiles sdwan-path-quality <name> metric jitter threshold <10-2000> set shared profiles sdwan-path-quality <name> metric jitter sensitivity <low|medium|high> set shared profiles sdwan-traffic-distribution set shared profiles sdwan-traffic-distribution <name> set shared profiles sdwan-traffic-distribution <name> traffic-distribution <Best Available Path|Top Down Priority|Weighted Session Distribution> set shared profiles sdwan-traffic-distribution <name> link-tags set shared profiles sdwan-traffic-distribution <name> link-tags <name> set shared profiles sdwan-traffic-distribution <name> link-tags <name> weight <0-100> set shared profiles sdwan-saas-quality set shared profiles sdwan-saas-quality <name> set shared profiles sdwan-saas-quality <name> monitor-mode set shared profiles sdwan-saas-quality <name> monitor-mode adaptive set shared profiles sdwan-saas-quality <name> monitor-mode static-ip set shared profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address set shared profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address <name> set shared profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address <name> probe-interval <1-60> set shared profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn set shared profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn fqdn-name <value> set shared profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn probe-interval <1-60> set shared profiles sdwan-saas-quality <name> monitor-mode http-https set shared profiles sdwan-saas-quality <name> monitor-mode http-https monitored-url <value> set shared profiles sdwan-saas-quality <name> monitor-mode http-https probe-interval <3-60> set shared profiles sdwan-error-correction set shared profiles sdwan-error-correction <name> set shared profiles sdwan-error-correction <name> activation-threshold <1-99> set shared profiles sdwan-error-correction <name> mode set shared profiles sdwan-error-correction <name> mode forward-error-correction set shared profiles sdwan-error-correction <name> mode forward-error-correction ratio <10% (20:2)|20% (20:4)|30% (20:6)|40% (20:8)|50% (20:10)> set shared profiles sdwan-error-correction <name> mode forward-error-correction recovery-duration <1-5000> set shared profiles sdwan-error-correction <name> mode packet-duplication set shared profiles sdwan-error-correction <name> mode packet-duplication recovery-duration-pd <1-5000>
set shared profiles decryption set shared profiles decryption <name> set shared profiles decryption <name> interface <value> set shared profiles decryption <name> forwarded-only <yes|no> set shared profiles decryption <name> ssl-forward-proxy set shared profiles decryption <name> ssl-forward-proxy block-expired-certificate <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-untrusted-issuer <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-tls13-downgrade-no-resource <yes|no> set shared profiles decryption <name> ssl-forward-proxy restrict-cert-exts <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-unsupported-version <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-unsupported-cipher <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-client-cert <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-if-no-resource <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-if-hsm-unavailable <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-unknown-cert <yes|no> set shared profiles decryption <name> ssl-forward-proxy block-timeout-cert <yes|no> set shared profiles decryption <name> ssl-forward-proxy auto-include-altname <yes|no> set shared profiles decryption <name> ssl-forward-proxy strip-alpn <yes|no> set shared profiles decryption <name> ssl-inbound-proxy set shared profiles decryption <name> ssl-inbound-proxy block-unsupported-version <yes|no> set shared profiles decryption <name> ssl-inbound-proxy block-unsupported-cipher <yes|no> set shared profiles decryption <name> ssl-inbound-proxy block-if-no-resource <yes|no> set shared profiles decryption <name> ssl-inbound-proxy block-tls13-downgrade-no-resource <yes|no> set shared profiles decryption <name> ssl-inbound-proxy block-if-hsm-unavailable <yes|no> set shared profiles decryption <name> ssl-protocol-settings set shared profiles decryption <name> ssl-protocol-settings min-version <sslv3|tls1-0|tls1-1|tls1-2|tls1-3> set shared profiles decryption <name> ssl-protocol-settings max-version <sslv3|tls1-0|tls1-1|tls1-2|tls1-3|max> set shared profiles decryption <name> ssl-protocol-settings keyxchg-algo-rsa <yes|no> set shared profiles decryption <name> ssl-protocol-settings keyxchg-algo-dhe <yes|no> set shared profiles decryption <name> ssl-protocol-settings keyxchg-algo-ecdhe <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-3des <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-rc4 <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-aes-128-cbc <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-aes-256-cbc <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-aes-128-gcm <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-aes-256-gcm <yes|no> set shared profiles decryption <name> ssl-protocol-settings enc-algo-chacha20-poly1305 <yes|no> set shared profiles decryption <name> ssl-protocol-settings auth-algo-md5 <yes|no> set shared profiles decryption <name> ssl-protocol-settings auth-algo-sha1 <yes|no> set shared profiles decryption <name> ssl-protocol-settings auth-algo-sha256 <yes|no> set shared profiles decryption <name> ssl-protocol-settings auth-algo-sha384 <yes|no> set shared profiles decryption <name> ssl-no-proxy set shared profiles decryption <name> ssl-no-proxy block-expired-certificate <yes|no> set shared profiles decryption <name> ssl-no-proxy block-untrusted-issuer <yes|no> set shared profiles decryption <name> ssh-proxy set shared profiles decryption <name> ssh-proxy block-unsupported-version <yes|no> set shared profiles decryption <name> ssh-proxy block-unsupported-alg <yes|no> set shared profiles decryption <name> ssh-proxy block-ssh-errors <yes|no> set shared profiles decryption <name> ssh-proxy block-if-no-resource <yes|no>
set shared profile-group set shared profile-group <name> set shared profile-group <name> virus [ <virus1> <virus2>... ] set shared profile-group <name> spyware [ <spyware1> <spyware2>... ] set shared profile-group <name> vulnerability [ <vulnerability1> <vulnerability2>... ] set shared profile-group <name> url-filtering [ <url-filtering1> <url-filtering2>... ] set shared profile-group <name> file-blocking [ <file-blocking1> <file-blocking2>... ] set shared profile-group <name> wildfire-analysis [ <wildfire-analysis1> <wildfire-analysis2>... ] set shared profile-group <name> data-filtering [ <data-filtering1> <data-filtering2>... ]
set shared schedule set shared schedule <name> set shared schedule <name> schedule-type set shared schedule <name> schedule-type recurring set shared schedule <name> schedule-type recurring weekly set shared schedule <name> schedule-type recurring weekly sunday [ <sunday1> <sunday2>... ] set shared schedule <name> schedule-type recurring weekly monday [ <monday1> <monday2>... ] set shared schedule <name> schedule-type recurring weekly tuesday [ <tuesday1> <tuesday2>... ] set shared schedule <name> schedule-type recurring weekly wednesday [ <wednesday1> <wednesday2>... ] set shared schedule <name> schedule-type recurring weekly thursday [ <thursday1> <thursday2>... ] set shared schedule <name> schedule-type recurring weekly friday [ <friday1> <friday2>... ] set shared schedule <name> schedule-type recurring weekly saturday [ <saturday1> <saturday2>... ] set shared schedule <name> schedule-type recurring daily [ <daily1> <daily2>... ] set shared schedule <name> schedule-type non-recurring [ <non-recurring1> <non-recurring2>... ]
set shared threats set shared threats vulnerability set shared threats vulnerability <name> set shared threats vulnerability <name> threatname <value> set shared threats vulnerability <name> affected-host set shared threats vulnerability <name> affected-host client <yes|no> set shared threats vulnerability <name> affected-host server <yes|no> set shared threats vulnerability <name> comment <value> set shared threats vulnerability <name> severity <value> set shared threats vulnerability <name> direction <value> set shared threats vulnerability <name> default-action set shared threats vulnerability <name> default-action alert set shared threats vulnerability <name> default-action drop set shared threats vulnerability <name> default-action reset-client set shared threats vulnerability <name> default-action reset-server set shared threats vulnerability <name> default-action reset-both set shared threats vulnerability <name> default-action block-ip set shared threats vulnerability <name> default-action block-ip track-by <source|source-and-destination> set shared threats vulnerability <name> default-action block-ip duration <1-3600> set shared threats vulnerability <name> default-action allow set shared threats vulnerability <name> cve [ <cve1> <cve2>... ] set shared threats vulnerability <name> bugtraq [ <bugtraq1> <bugtraq2>... ] set shared threats vulnerability <name> vendor [ <vendor1> <vendor2>... ] set shared threats vulnerability <name> reference [ <reference1> <reference2>... ] set shared threats vulnerability <name> signature set shared threats vulnerability <name> signature standard set shared threats vulnerability <name> signature standard <name> set shared threats vulnerability <name> signature standard <name> comment <value> set shared threats vulnerability <name> signature standard <name> scope <protocol-data-unit|session> set shared threats vulnerability <name> signature standard <name> order-free <yes|no> set shared threats vulnerability <name> signature standard <name> and-condition set shared threats vulnerability <name> signature standard <name> and-condition <name> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than context <value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to context <value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to value <0-4294967295> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> value <1-127>|<value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than context <value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match context <value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match pattern <value> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match negate <yes|no> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> set shared threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value> set shared threats vulnerability <name> signature combination set shared threats vulnerability <name> signature combination time-attribute set shared threats vulnerability <name> signature combination time-attribute interval <1-3600> set shared threats vulnerability <name> signature combination time-attribute threshold <1-255> set shared threats vulnerability <name> signature combination time-attribute track-by <source|destination|source-and-destination> set shared threats vulnerability <name> signature combination order-free <yes|no> set shared threats vulnerability <name> signature combination and-condition set shared threats vulnerability <name> signature combination and-condition <name> set shared threats vulnerability <name> signature combination and-condition <name> or-condition set shared threats vulnerability <name> signature combination and-condition <name> or-condition <name> set shared threats vulnerability <name> signature combination and-condition <name> or-condition <name> threat-id <value>
set shared threats spyware set shared threats spyware <name> set shared threats spyware <name> threatname <value> set shared threats spyware <name> comment <value> set shared threats spyware <name> severity <value> set shared threats spyware <name> direction <value> set shared threats spyware <name> default-action set shared threats spyware <name> default-action alert set shared threats spyware <name> default-action drop set shared threats spyware <name> default-action reset-client set shared threats spyware <name> default-action reset-server set shared threats spyware <name> default-action reset-both set shared threats spyware <name> default-action block-ip set shared threats spyware <name> default-action block-ip track-by <source|source-and-destination> set shared threats spyware <name> default-action block-ip duration <1-3600> set shared threats spyware <name> default-action allow set shared threats spyware <name> cve [ <cve1> <cve2>... ] set shared threats spyware <name> bugtraq [ <bugtraq1> <bugtraq2>... ] set shared threats spyware <name> vendor [ <vendor1> <vendor2>... ] set shared threats spyware <name> reference [ <reference1> <reference2>... ] set shared threats spyware <name> signature set shared threats spyware <name> signature standard set shared threats spyware <name> signature standard <name> set shared threats spyware <name> signature standard <name> comment <value> set shared threats spyware <name> signature standard <name> scope <protocol-data-unit|session> set shared threats spyware <name> signature standard <name> order-free <yes|no> set shared threats spyware <name> signature standard <name> and-condition set shared threats spyware <name> signature standard <name> and-condition <name> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than context <value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to value <0-4294967295> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to context <value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> value <1-127>|<value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than context <value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match context <value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match pattern <value> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match negate <yes|no> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> set shared threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value> set shared threats spyware <name> signature combination set shared threats spyware <name> signature combination time-attribute set shared threats spyware <name> signature combination time-attribute interval <1-3600> set shared threats spyware <name> signature combination time-attribute threshold <1-255> set shared threats spyware <name> signature combination time-attribute track-by <source|destination|source-and-destination> set shared threats spyware <name> signature combination order-free <yes|no> set shared threats spyware <name> signature combination and-condition set shared threats spyware <name> signature combination and-condition <name> set shared threats spyware <name> signature combination and-condition <name> or-condition set shared threats spyware <name> signature combination and-condition <name> or-condition <name> set shared threats spyware <name> signature combination and-condition <name> or-condition <name> threat-id <value>
set shared external-list set shared external-list <name> set shared external-list <name> type set shared external-list <name> type predefined-ip set shared external-list <name> type predefined-ip exception-list [ <exception-list1> <exception-list2>... ] set shared external-list <name> type predefined-ip description <value> set shared external-list <name> type predefined-ip url <value> set shared external-list <name> type predefined-url set shared external-list <name> type predefined-url exception-list [ <exception-list1> <exception-list2>... ] set shared external-list <name> type predefined-url description <value> set shared external-list <name> type predefined-url url <value> set shared external-list <name> type ip set shared external-list <name> type ip exception-list [ <exception-list1> <exception-list2>... ] set shared external-list <name> type ip description <value> set shared external-list <name> type ip url <value> set shared external-list <name> type ip certificate-profile <value>|<None> set shared external-list <name> type ip auth set shared external-list <name> type ip auth username <value> set shared external-list <name> type ip auth password <value> set shared external-list <name> type ip recurring set shared external-list <name> type ip recurring five-minute set shared external-list <name> type ip recurring hourly set shared external-list <name> type ip recurring daily set shared external-list <name> type ip recurring daily at <value> set shared external-list <name> type ip recurring weekly set shared external-list <name> type ip recurring weekly day-of-week <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set shared external-list <name> type ip recurring weekly at <value> set shared external-list <name> type ip recurring monthly set shared external-list <name> type ip recurring monthly day-of-month <1-31> set shared external-list <name> type ip recurring monthly at <value> set shared external-list <name> type domain set shared external-list <name> type domain exception-list [ <exception-list1> <exception-list2>... ] set shared external-list <name> type domain description <value> set shared external-list <name> type domain url <value> set shared external-list <name> type domain certificate-profile <value>|<None> set shared external-list <name> type domain auth set shared external-list <name> type domain auth username <value> set shared external-list <name> type domain auth password <value> set shared external-list <name> type domain recurring set shared external-list <name> type domain recurring hourly set shared external-list <name> type domain recurring five-minute set shared external-list <name> type domain recurring daily set shared external-list <name> type domain recurring daily at <value> set shared external-list <name> type domain recurring weekly set shared external-list <name> type domain recurring weekly day-of-week <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set shared external-list <name> type domain recurring weekly at <value> set shared external-list <name> type domain recurring monthly set shared external-list <name> type domain recurring monthly day-of-month <1-31> set shared external-list <name> type domain recurring monthly at <value> set shared external-list <name> type domain expand-domain <yes|no> set shared external-list <name> type url set shared external-list <name> type url exception-list [ <exception-list1> <exception-list2>... ] set shared external-list <name> type url description <value> set shared external-list <name> type url url <value> set shared external-list <name> type url certificate-profile <value>|<None> set shared external-list <name> type url auth set shared external-list <name> type url auth username <value> set shared external-list <name> type url auth password <value> set shared external-list <name> type url recurring set shared external-list <name> type url recurring hourly set shared external-list <name> type url recurring five-minute set shared external-list <name> type url recurring daily set shared external-list <name> type url recurring daily at <value> set shared external-list <name> type url recurring weekly set shared external-list <name> type url recurring weekly day-of-week <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set shared external-list <name> type url recurring weekly at <value> set shared external-list <name> type url recurring monthly set shared external-list <name> type url recurring monthly day-of-month <1-31> set shared external-list <name> type url recurring monthly at <value>
set shared tag set shared tag <name> set shared tag <name> color <color1|color2|color3|color4|color5|color6|color7|color8|color9|color10|color11|color12|color13|color14|color15|color16|color17|color19|color20|color21|color22|color23|color24|color25|color26|color27|color28|color29|color30|color31|color32|color33|color34|color35|color36|color37|color38|color39|color40|color41|color42> set shared tag <name> comments <value>
set shared global-protect set shared global-protect clientless-app set shared global-protect clientless-app <name> set shared global-protect clientless-app <name> application-home-url <value> set shared global-protect clientless-app <name> description <value> set shared global-protect clientless-app <name> app-icon <value> set shared global-protect clientless-app-group set shared global-protect clientless-app-group <name> set shared global-protect clientless-app-group <name> members [ <members1> <members2>... ] set shared reports <name> type threat group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|vsys_name|device_name|parent_session_id|parent_start_time|threatid|category|severity|direction|http_method|nssai_sst|filedigest|filetype|http2_connection|xff_ip|threat_name|src_edl|dst_edl|dynusergroup_name|hostid|partial_hash|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|misc|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|pbf-s2c|pbf-c2s|flag-nat|flag-pcap|subtype|transaction|captive-portal|flag-proxy|non-std-dport|tunnelid|monitortag|users|category-of-threatid|threat-type> set shared reports <name> type url group-by <action|app|category|category-of-app|direction|dport|dst|dstuser|from|inbound_if|misc|http_headers|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|severity|sport|src|srcuser|subcategory-of-app|technology-of-app|container-of-app|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|contenttype|user_agent|device_name|vsys_name|url|tunnelid|monitortag|parent_session_id|parent_start_time|http2_connection|tunnel|http_method|url_category_list|xff_ip|container_id|pod_namespace|pod_name|src_dag|dst_dag|src_edl|dst_edl|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac> set shared url-content-types [ <url-content-types1> <url-content-types2>... ]
set shared admin-role <name> role vsys set shared admin-role <name> role vsys webui set shared admin-role <name> role vsys webui dashboard <enable|disable> set shared admin-role <name> role vsys webui acc <enable|disable> set shared admin-role <name> role vsys webui monitor set shared admin-role <name> role vsys webui monitor logs set shared admin-role <name> role vsys webui monitor logs traffic <enable|disable> set shared admin-role <name> role vsys webui monitor logs threat <enable|disable> set shared admin-role <name> role vsys webui monitor logs url <enable|disable> set shared admin-role <name> role vsys webui monitor logs wildfire <enable|disable> set shared admin-role <name> role vsys webui monitor logs data-filtering <enable|disable> set shared admin-role <name> role vsys webui monitor logs hipmatch <enable|disable> set shared admin-role <name> role vsys webui monitor logs iptag <enable|disable> set shared admin-role <name> role vsys webui monitor logs userid <enable|disable> set shared admin-role <name> role vsys webui monitor logs decryption <enable|disable> set shared admin-role <name> role vsys webui monitor logs gtp <enable|disable> set shared admin-role <name> role vsys webui monitor logs tunnel <enable|disable> set shared admin-role <name> role vsys webui monitor logs sctp <enable|disable> set shared admin-role <name> role vsys webui monitor logs authentication <enable|disable> set shared admin-role <name> role vsys webui monitor external-logs <enable|disable> set shared admin-role <name> role vsys webui monitor automated-correlation-engine set shared admin-role <name> role vsys webui monitor automated-correlation-engine correlation-objects <enable|disable> set shared admin-role <name> role vsys webui monitor automated-correlation-engine correlated-events <enable|disable> set shared admin-role <name> role vsys webui monitor app-scope <enable|disable> set shared admin-role <name> role vsys webui monitor session-browser <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor block-ip-list <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor pdf-reports set shared admin-role <name> role vsys webui monitor pdf-reports manage-pdf-summary <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor pdf-reports pdf-summary-reports <enable|disable> set shared admin-role <name> role vsys webui monitor pdf-reports user-activity-report <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor pdf-reports saas-application-usage-report <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor pdf-reports report-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor pdf-reports email-scheduler <enable|read-only|disable> set shared admin-role <name> role vsys webui monitor custom-reports set shared admin-role <name> role vsys webui monitor custom-reports application-statistics <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports data-filtering-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports threat-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports threat-summary <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports traffic-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports traffic-summary <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports url-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports url-summary <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports hipmatch <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports wildfire-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports gtp-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports gtp-summary <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports tunnel-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports tunnel-summary <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports sctp-log <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports sctp-summary <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports iptag <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports userid <enable|disable> set shared admin-role <name> role vsys webui monitor custom-reports auth <enable|disable> set shared admin-role <name> role vsys webui monitor view-custom-reports <enable|disable> set shared admin-role <name> role vsys webui policies set shared admin-role <name> role vsys webui policies security-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies nat-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies qos-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies pbf-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies ssl-decryption-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies network-packet-broker-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies tunnel-inspect-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies application-override-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies authentication-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies dos-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies sdwan-rulebase <enable|read-only|disable> set shared admin-role <name> role vsys webui policies rule-hit-count-reset <enable|disable> set shared admin-role <name> role vsys webui objects set shared admin-role <name> role vsys webui objects addresses <enable|read-only|disable> set shared admin-role <name> role vsys webui objects address-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui objects regions <enable|read-only|disable> set shared admin-role <name> role vsys webui objects dynamic-user-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui objects applications <enable|read-only|disable> set shared admin-role <name> role vsys webui objects application-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui objects application-filters <enable|read-only|disable> set shared admin-role <name> role vsys webui objects services <enable|read-only|disable> set shared admin-role <name> role vsys webui objects service-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui objects tags <enable|read-only|disable> set shared admin-role <name> role vsys webui objects devices <enable|read-only|disable> set shared admin-role <name> role vsys webui objects global-protect set shared admin-role <name> role vsys webui objects global-protect hip-objects <enable|read-only|disable> set shared admin-role <name> role vsys webui objects global-protect hip-profiles <enable|read-only|disable> set shared admin-role <name> role vsys webui objects dynamic-block-lists <enable|read-only|disable> set shared admin-role <name> role vsys webui objects custom-objects set shared admin-role <name> role vsys webui objects custom-objects data-patterns <enable|read-only|disable> set shared admin-role <name> role vsys webui objects custom-objects spyware <enable|read-only|disable> set shared admin-role <name> role vsys webui objects custom-objects vulnerability <enable|read-only|disable> set shared admin-role <name> role vsys webui objects custom-objects url-category <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles set shared admin-role <name> role vsys webui objects security-profiles antivirus <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles anti-spyware <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles vulnerability-protection <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles url-filtering <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles file-blocking <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles wildfire-analysis <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles data-filtering <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profiles dos-protection <enable|read-only|disable> set shared admin-role <name> role vsys webui objects security-profile-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui objects log-forwarding <enable|read-only|disable> set shared admin-role <name> role vsys webui objects authentication <enable|read-only|disable> set shared admin-role <name> role vsys webui objects decryption set shared admin-role <name> role vsys webui objects decryption decryption-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui objects packet-broker-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui objects sdwan set shared admin-role <name> role vsys webui objects sdwan sdwan-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui objects sdwan sdwan-saas-quality-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui objects sdwan sdwan-dist-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui objects sdwan sdwan-error-correction-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui objects schedules <enable|read-only|disable> set shared admin-role <name> role vsys webui network set shared admin-role <name> role vsys webui network zones <enable|read-only|disable> set shared admin-role <name> role vsys webui network global-protect set shared admin-role <name> role vsys webui network global-protect portals <enable|read-only|disable> set shared admin-role <name> role vsys webui network global-protect gateways <enable|read-only|disable> set shared admin-role <name> role vsys webui network global-protect mdm <enable|read-only|disable> set shared admin-role <name> role vsys webui network global-protect clientless-apps <enable|read-only|disable> set shared admin-role <name> role vsys webui network global-protect clientless-app-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui network sdwan-interface-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui device set shared admin-role <name> role vsys webui device setup set shared admin-role <name> role vsys webui device setup management <read-only|disable> set shared admin-role <name> role vsys webui device setup operations <read-only|disable> set shared admin-role <name> role vsys webui device setup services <enable|read-only|disable> set shared admin-role <name> role vsys webui device setup interfaces <enable|read-only|disable> set shared admin-role <name> role vsys webui device setup telemetry <read-only|disable> set shared admin-role <name> role vsys webui device setup content-id <read-only|disable> set shared admin-role <name> role vsys webui device setup wildfire <read-only|disable> set shared admin-role <name> role vsys webui device setup session <read-only|disable> set shared admin-role <name> role vsys webui device setup hsm <read-only|disable> set shared admin-role <name> role vsys webui device administrators <read-only|disable> set shared admin-role <name> role vsys webui device authentication-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui device authentication-sequence <enable|read-only|disable> set shared admin-role <name> role vsys webui device user-identification <enable|read-only|disable> set shared admin-role <name> role vsys webui device data-redistribution <enable|read-only|disable> set shared admin-role <name> role vsys webui device device-quarantine <enable|read-only|disable> set shared admin-role <name> role vsys webui device vm-info-source <enable|read-only|disable> set shared admin-role <name> role vsys webui device troubleshooting <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management set shared admin-role <name> role vsys webui device certificate-management certificates <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management certificate-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management ocsp-responder <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management ssl-tls-service-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management scep <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management ssl-decryption-exclusion <enable|read-only|disable> set shared admin-role <name> role vsys webui device certificate-management ssh-service-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui device block-pages <enable|read-only|disable> set shared admin-role <name> role vsys webui device log-settings set shared admin-role <name> role vsys webui device log-settings system <read-only|disable> set shared admin-role <name> role vsys webui device log-settings config <read-only|disable> set shared admin-role <name> role vsys webui device log-settings iptag <read-only|disable> set shared admin-role <name> role vsys webui device log-settings user-id <read-only|disable> set shared admin-role <name> role vsys webui device log-settings hipmatch <read-only|disable> set shared admin-role <name> role vsys webui device log-settings correlation <read-only|disable> set shared admin-role <name> role vsys webui device server-profile set shared admin-role <name> role vsys webui device server-profile snmp-trap <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile syslog <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile email <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile http <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile netflow <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile radius <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile tacplus <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile ldap <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile kerberos <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile saml_idp <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile dns <enable|read-only|disable> set shared admin-role <name> role vsys webui device server-profile mfa <enable|read-only|disable> set shared admin-role <name> role vsys webui device local-user-database set shared admin-role <name> role vsys webui device local-user-database users <enable|read-only|disable> set shared admin-role <name> role vsys webui device local-user-database user-groups <enable|read-only|disable> set shared admin-role <name> role vsys webui device policy-recommendations set shared admin-role <name> role vsys webui device policy-recommendations iot <enable|read-only|disable> set shared admin-role <name> role vsys webui device policy-recommendations saas <enable|read-only|disable> set shared admin-role <name> role vsys webui operations set shared admin-role <name> role vsys webui operations reboot <enable|disable> set shared admin-role <name> role vsys webui operations generate-tech-support-file <enable|disable> set shared admin-role <name> role vsys webui operations generate-stats-dump-file <enable|disable> set shared admin-role <name> role vsys webui operations download-core-files <enable|disable> set shared admin-role <name> role vsys webui privacy set shared admin-role <name> role vsys webui privacy show-full-ip-addresses <enable|disable> set shared admin-role <name> role vsys webui privacy show-user-names-in-logs-and-reports <enable|disable> set shared admin-role <name> role vsys webui privacy view-pcap-files <enable|disable> set shared admin-role <name> role vsys webui validate <enable|disable> set shared admin-role <name> role vsys webui save set shared admin-role <name> role vsys webui save partial-save <enable|disable> set shared admin-role <name> role vsys webui save save-for-other-admins <enable|disable> set shared admin-role <name> role vsys webui commit set shared admin-role <name> role vsys webui commit virtual-systems <enable|disable> set shared admin-role <name> role vsys webui commit commit-for-other-admins <enable|disable> set shared admin-role <name> role vsys webui tasks <enable|disable> set shared admin-role <name> role vsys xmlapi set shared admin-role <name> role vsys xmlapi report <enable|disable> set shared admin-role <name> role vsys xmlapi log <enable|disable> set shared admin-role <name> role vsys xmlapi config <enable|disable> set shared admin-role <name> role vsys xmlapi op <enable|disable> set shared admin-role <name> role vsys xmlapi commit <enable|disable> set shared admin-role <name> role vsys xmlapi user-id <enable|disable> set shared admin-role <name> role vsys xmlapi iot <enable|disable> set shared admin-role <name> role vsys xmlapi export <enable|disable> set shared admin-role <name> role vsys xmlapi import <enable|disable> set shared admin-role <name> role vsys cli <vsysadmin|vsysreader> set shared admin-role <name> role vsys restapi set shared admin-role <name> role vsys restapi objects set shared admin-role <name> role vsys restapi objects addresses <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects address-groups <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects regions <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects dynamic-user-groups <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects applications <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects application-groups <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects application-filters <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects services <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects service-groups <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects tags <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects devices <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects external-dynamic-lists <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects custom-data-patterns <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects custom-spyware-signatures <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects custom-vulnerability-signatures <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects custom-url-categories <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects antivirus-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects anti-spyware-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects vulnerability-protection-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects url-filtering-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects file-blocking-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects wildfire-analysis-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects data-filtering-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects dos-protection-security-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects security-profile-groups <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects log-forwarding-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects authentication-enforcements <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects decryption-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects packet-broker-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects schedules <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects sdwan-path-quality-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects sdwan-saas-quality-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects sdwan-traffic-distribution-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects sdwan-error-correction-profiles <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies set shared admin-role <name> role vsys restapi policies security-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies nat-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies qos-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies policy-based-forwarding-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies decryption-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies network-packet-broker-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies tunnel-inspection-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies application-override-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies authentication-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies dos-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi policies sdwan-rules <enable|read-only|disable> set shared admin-role <name> role vsys restapi network set shared admin-role <name> role vsys restapi network zones <enable|read-only|disable> set shared admin-role <name> role vsys restapi device set shared admin-role <name> role vsys restapi device log-interface-setting <enable|read-only|disable> set shared admin-role <name> role vsys restapi device virtual-systems <enable|read-only|disable> set shared admin-role <name> role vsys restapi system set shared admin-role <name> role vsys restapi system configuration <enable|read-only|disable> set shared user-id-hub vsys <value>
There were 2717 removed commands from set vsys.
set vsys set vsys <name> set vsys <name> display-name <value> set vsys <name> setting set vsys <name> setting nat set vsys <name> setting nat reserve-ip <yes|no> set vsys <name> setting nat reserve-time <1-604800> set vsys <name> setting ssl-decrypt set vsys <name> setting ssl-decrypt allow-forward-decrypted-content <yes|no> set vsys <name> setting ssl-decrypt url-wait <yes|no> set vsys <name> setting ssl-decrypt url-proxy <yes|no> set vsys <name> setting ssl-decrypt notify-user <yes|no> set vsys <name> setting ssl-decrypt answer-timeout <1-86400> set vsys <name> import set vsys <name> import dns-proxy <value> set vsys <name> import network set vsys <name> import network interface [ <interface1> <interface2>... ] set vsys <name> import network virtual-wire [ <virtual-wire1> <virtual-wire2>... ] set vsys <name> import network vlan [ <vlan1> <vlan2>... ] set vsys <name> import network virtual-router [ <virtual-router1> <virtual-router2>... ] set vsys <name> import network logical-router [ <logical-router1> <logical-router2>... ] set vsys <name> import resource set vsys <name> import resource max-sessions <1-4194290> set vsys <name> import resource max-site-to-site-vpn-tunnels <0-10000> set vsys <name> import resource max-concurrent-ssl-vpn-tunnels <0-65535> set vsys <name> import resource max-security-rules <0-65000> set vsys <name> import resource max-nat-rules <0-16000> set vsys <name> import resource max-ssl-decryption-rules <0-5000> set vsys <name> import resource max-qos-rules <0-8000> set vsys <name> import resource max-application-override-rules <0-4000> set vsys <name> import resource max-pbf-rules <0-2000> set vsys <name> import resource max-auth-rules <0-8000> set vsys <name> import resource max-dos-rules <0-2000> set vsys <name> import resource max-sdwan-rules <0-2000> set vsys <name> import visible-vsys [ <visible-vsys1> <visible-vsys2>... ] set vsys <name> route set vsys <name> route service set vsys <name> route service <name> set vsys <name> route service <name> source set vsys <name> route service <name> source interface <value> set vsys <name> route service <name> source address <value> set vsys <name> route service <name> source-v6 set vsys <name> route service <name> source-v6 interface <value> set vsys <name> route service <name> source-v6 address <value> set vsys <name> authentication-profile set vsys <name> authentication-profile <name> set vsys <name> authentication-profile <name> username-modifier <value>|<validate>|<%USERINPUT%|%USERINPUT%@%USERDOMAIN%|%USERDOMAIN%\%USERINPUT%> set vsys <name> authentication-profile <name> user-domain <value> set vsys <name> authentication-profile <name> single-sign-on set vsys <name> authentication-profile <name> single-sign-on realm <value> set vsys <name> authentication-profile <name> single-sign-on service-principal <value> set vsys <name> authentication-profile <name> single-sign-on kerberos-keytab <value> set vsys <name> authentication-profile <name> lockout set vsys <name> authentication-profile <name> lockout failed-attempts <0-10> set vsys <name> authentication-profile <name> lockout lockout-time <0-60> set vsys <name> authentication-profile <name> allow-list [ <allow-list1> <allow-list2>... ] set vsys <name> authentication-profile <name> method set vsys <name> authentication-profile <name> method none set vsys <name> authentication-profile <name> method cloud set vsys <name> authentication-profile <name> method cloud region set vsys <name> authentication-profile <name> method cloud region region_id <value> set vsys <name> authentication-profile <name> method cloud region tenant set vsys <name> authentication-profile <name> method cloud region tenant tenant_id <value> set vsys <name> authentication-profile <name> method cloud region tenant profile set vsys <name> authentication-profile <name> method cloud region tenant profile profile_id <value> set vsys <name> authentication-profile <name> method cloud region tenant profile mfa set vsys <name> authentication-profile <name> method cloud region tenant profile mfa force-mfa <value> set vsys <name> authentication-profile <name> method cloud clock-skew <1-900> set vsys <name> authentication-profile <name> method local-database set vsys <name> authentication-profile <name> method radius set vsys <name> authentication-profile <name> method radius server-profile <value> set vsys <name> authentication-profile <name> method radius checkgroup <yes|no> set vsys <name> authentication-profile <name> method ldap set vsys <name> authentication-profile <name> method ldap server-profile <value> set vsys <name> authentication-profile <name> method ldap login-attribute <value> set vsys <name> authentication-profile <name> method ldap passwd-exp-days <0-255> set vsys <name> authentication-profile <name> method kerberos set vsys <name> authentication-profile <name> method kerberos server-profile <value> set vsys <name> authentication-profile <name> method kerberos realm <value> set vsys <name> authentication-profile <name> method tacplus set vsys <name> authentication-profile <name> method tacplus server-profile <value> set vsys <name> authentication-profile <name> method tacplus checkgroup <yes|no> set vsys <name> authentication-profile <name> method saml-idp set vsys <name> authentication-profile <name> method saml-idp server-profile <value> set vsys <name> authentication-profile <name> method saml-idp enable-single-logout <yes|no> set vsys <name> authentication-profile <name> method saml-idp request-signing-certificate <value> set vsys <name> authentication-profile <name> method saml-idp certificate-profile <value> set vsys <name> authentication-profile <name> method saml-idp attribute-name-username <value> set vsys <name> authentication-profile <name> method saml-idp attribute-name-usergroup <value> set vsys <name> authentication-profile <name> method saml-idp attribute-name-admin-role <value> set vsys <name> authentication-profile <name> method saml-idp attribute-name-access-domain <value> set vsys <name> authentication-profile <name> multi-factor-auth set vsys <name> authentication-profile <name> multi-factor-auth mfa-enable <yes|no> set vsys <name> authentication-profile <name> multi-factor-auth factors [ <factors1> <factors2>... ] set vsys <name> authentication-sequence set vsys <name> authentication-sequence <name> set vsys <name> authentication-sequence <name> use-domain-find-profile <yes|no> set vsys <name> authentication-sequence <name> authentication-profiles [ <authentication-profiles1> <authentication-profiles2>... ] set vsys <name> certificate-profile set vsys <name> certificate-profile <name> set vsys <name> certificate-profile <name> username-field set vsys <name> certificate-profile <name> username-field subject <common-name> set vsys <name> certificate-profile <name> username-field subject-alt <email|principal-name> set vsys <name> certificate-profile <name> domain <value> set vsys <name> certificate-profile <name> CA set vsys <name> certificate-profile <name> CA <name> set vsys <name> certificate-profile <name> CA <name> default-ocsp-url <value> set vsys <name> certificate-profile <name> CA <name> ocsp-verify-cert <value> set vsys <name> certificate-profile <name> CA <name> template-name <value> set vsys <name> certificate-profile <name> use-crl <yes|no> set vsys <name> certificate-profile <name> use-ocsp <yes|no> set vsys <name> certificate-profile <name> crl-receive-timeout <1-60> set vsys <name> certificate-profile <name> ocsp-receive-timeout <1-60> set vsys <name> certificate-profile <name> ocsp-exclude-nonce <yes|no> set vsys <name> certificate-profile <name> cert-status-timeout <0-60> set vsys <name> certificate-profile <name> block-unknown-cert <yes|no> set vsys <name> certificate-profile <name> block-timeout-cert <yes|no> set vsys <name> certificate-profile <name> block-unauthenticated-cert <yes|no> set vsys <name> certificate-profile <name> block-expired-cert <yes|no> set vsys <name> server-profile set vsys <name> server-profile ldap set vsys <name> server-profile ldap <name> set vsys <name> server-profile ldap <name> ldap-type <active-directory|e-directory|sun|other> set vsys <name> server-profile ldap <name> server set vsys <name> server-profile ldap <name> server <name> set vsys <name> server-profile ldap <name> server <name> address <ip/netmask>|<value> set vsys <name> server-profile ldap <name> server <name> port <1-65535> set vsys <name> server-profile ldap <name> ssl <yes|no> set vsys <name> server-profile ldap <name> ssl <yes> set vsys <name> server-profile ldap <name> verify-server-certificate <yes|no> set vsys <name> server-profile ldap <name> disabled <yes|no> set vsys <name> server-profile ldap <name> base <value> set vsys <name> server-profile ldap <name> bind-dn <value> set vsys <name> server-profile ldap <name> bind-password <value> set vsys <name> server-profile ldap <name> timelimit <1-30> set vsys <name> server-profile ldap <name> bind-timelimit <1-60> set vsys <name> server-profile ldap <name> retry-interval <60-3600> set vsys <name> server-profile radius set vsys <name> server-profile radius <name> set vsys <name> server-profile radius <name> timeout <1-120> set vsys <name> server-profile radius <name> retries <1-5> set vsys <name> server-profile radius <name> protocol set vsys <name> server-profile radius <name> protocol CHAP set vsys <name> server-profile radius <name> protocol PAP set vsys <name> server-profile radius <name> protocol PEAP-MSCHAPv2 set vsys <name> server-profile radius <name> protocol PEAP-MSCHAPv2 anon-outer-id <yes|no> set vsys <name> server-profile radius <name> protocol PEAP-MSCHAPv2 allow-pwd-change <yes|no> set vsys <name> server-profile radius <name> protocol PEAP-MSCHAPv2 radius-cert-profile <value> set vsys <name> server-profile radius <name> protocol PEAP-with-GTC set vsys <name> server-profile radius <name> protocol PEAP-with-GTC anon-outer-id <yes|no> set vsys <name> server-profile radius <name> protocol PEAP-with-GTC radius-cert-profile <value> set vsys <name> server-profile radius <name> protocol EAP-TTLS-with-PAP set vsys <name> server-profile radius <name> protocol EAP-TTLS-with-PAP anon-outer-id <yes|no> set vsys <name> server-profile radius <name> protocol EAP-TTLS-with-PAP radius-cert-profile <value> set vsys <name> server-profile radius <name> server set vsys <name> server-profile radius <name> server <name> set vsys <name> server-profile radius <name> server <name> ip-address <ip/netmask>|<value> set vsys <name> server-profile radius <name> server <name> secret <value> set vsys <name> server-profile radius <name> server <name> port <1-65535> set vsys <name> server-profile kerberos set vsys <name> server-profile kerberos <name> set vsys <name> server-profile kerberos <name> server set vsys <name> server-profile kerberos <name> server <name> set vsys <name> server-profile kerberos <name> server <name> host <ip/netmask>|<value> set vsys <name> server-profile kerberos <name> server <name> port <1-65535> set vsys <name> server-profile tacplus set vsys <name> server-profile tacplus <name> set vsys <name> server-profile tacplus <name> timeout <1-30> set vsys <name> server-profile tacplus <name> use-single-connection <yes|no> set vsys <name> server-profile tacplus <name> protocol <CHAP|PAP> set vsys <name> server-profile tacplus <name> server set vsys <name> server-profile tacplus <name> server <name> set vsys <name> server-profile tacplus <name> server <name> address <ip/netmask>|<value> set vsys <name> server-profile tacplus <name> server <name> secret <value> set vsys <name> server-profile tacplus <name> server <name> port <1-65535> set vsys <name> server-profile saml-idp set vsys <name> server-profile saml-idp <name> set vsys <name> server-profile saml-idp <name> entity-id <value> set vsys <name> server-profile saml-idp <name> certificate <value> set vsys <name> server-profile saml-idp <name> sso-url <value> set vsys <name> server-profile saml-idp <name> sso-bindings <post|redirect> set vsys <name> server-profile saml-idp <name> slo-url <value> set vsys <name> server-profile saml-idp <name> slo-bindings <post|redirect> set vsys <name> server-profile saml-idp <name> validate-idp-certificate <yes|no> set vsys <name> server-profile saml-idp <name> want-auth-requests-signed <yes|no> set vsys <name> server-profile saml-idp <name> max-clock-skew <1-900> set vsys <name> server-profile netflow set vsys <name> server-profile netflow <name> set vsys <name> server-profile netflow <name> template-refresh-rate set vsys <name> server-profile netflow <name> template-refresh-rate minutes <1-3600> set vsys <name> server-profile netflow <name> template-refresh-rate packets <1-600> set vsys <name> server-profile netflow <name> active-timeout <1-60> set vsys <name> server-profile netflow <name> export-enterprise-fields <yes|no> set vsys <name> server-profile netflow <name> server set vsys <name> server-profile netflow <name> server <name> set vsys <name> server-profile netflow <name> server <name> host <ip/netmask>|<value> set vsys <name> server-profile netflow <name> server <name> port <1-65535> set vsys <name> server-profile dns set vsys <name> server-profile dns <name> set vsys <name> server-profile dns <name> inheritance set vsys <name> server-profile dns <name> inheritance source <value> set vsys <name> server-profile dns <name> primary <validate>|<ip/netmask>|<inherited> set vsys <name> server-profile dns <name> secondary <validate>|<ip/netmask>|<inherited> set vsys <name> server-profile dns <name> source set vsys <name> server-profile dns <name> source interface <value> set vsys <name> server-profile dns <name> source address <value> set vsys <name> server-profile dns <name> source-v6 set vsys <name> server-profile dns <name> source-v6 interface <value> set vsys <name> server-profile dns <name> source-v6 address <value> set vsys <name> server-profile mfa-server-profile set vsys <name> server-profile mfa-server-profile <name> set vsys <name> server-profile mfa-server-profile <name> mfa-vendor-type <value> set vsys <name> server-profile mfa-server-profile <name> mfa-cert-profile <value> set vsys <name> server-profile mfa-server-profile <name> mfa-config set vsys <name> server-profile mfa-server-profile <name> mfa-config <name> set vsys <name> server-profile mfa-server-profile <name> mfa-config <name> value <value> set vsys <name> dns-proxy set vsys <name> dns-proxy <name> set vsys <name> dns-proxy <name> enabled <yes|no> set vsys <name> dns-proxy <name> interface [ <interface1> <interface2>... ] set vsys <name> dns-proxy <name> server-profile <value> set vsys <name> dns-proxy <name> domain-servers set vsys <name> dns-proxy <name> domain-servers <name> set vsys <name> dns-proxy <name> domain-servers <name> cacheable <yes|no> set vsys <name> dns-proxy <name> domain-servers <name> domain-name [ <domain-name1> <domain-name2>... ] set vsys <name> dns-proxy <name> domain-servers <name> server-profile <value> set vsys <name> dns-proxy <name> cache set vsys <name> dns-proxy <name> cache enabled <yes|no> set vsys <name> dns-proxy <name> cache cache-edns <yes|no> set vsys <name> dns-proxy <name> cache max-ttl set vsys <name> dns-proxy <name> cache max-ttl enabled <yes|no> set vsys <name> dns-proxy <name> cache max-ttl time-to-live <60-86400> set vsys <name> dns-proxy <name> static-entries set vsys <name> dns-proxy <name> static-entries <name> set vsys <name> dns-proxy <name> static-entries <name> domain <value> set vsys <name> dns-proxy <name> static-entries <name> address [ <address1> <address2>... ] set vsys <name> dns-proxy <name> tcp-queries set vsys <name> dns-proxy <name> tcp-queries enabled <yes|no> set vsys <name> dns-proxy <name> tcp-queries max-pending-requests <64-256> set vsys <name> dns-proxy <name> udp-queries set vsys <name> dns-proxy <name> udp-queries retries set vsys <name> dns-proxy <name> udp-queries retries interval <1-30> set vsys <name> dns-proxy <name> udp-queries retries attempts <1-30> set vsys <name> log-settings set vsys <name> log-settings snmptrap set vsys <name> log-settings snmptrap <name> set vsys <name> log-settings snmptrap <name> version set vsys <name> log-settings snmptrap <name> version v2c set vsys <name> log-settings snmptrap <name> version v2c server set vsys <name> log-settings snmptrap <name> version v2c server <name> set vsys <name> log-settings snmptrap <name> version v2c server <name> manager <ip/netmask>|<value> set vsys <name> log-settings snmptrap <name> version v2c server <name> community <value> set vsys <name> log-settings snmptrap <name> version v3 set vsys <name> log-settings snmptrap <name> version v3 server set vsys <name> log-settings snmptrap <name> version v3 server <name> set vsys <name> log-settings snmptrap <name> version v3 server <name> manager <ip/netmask>|<value> set vsys <name> log-settings snmptrap <name> version v3 server <name> user <value> set vsys <name> log-settings snmptrap <name> version v3 server <name> engineid <value> set vsys <name> log-settings snmptrap <name> version v3 server <name> authpwd <value> set vsys <name> log-settings snmptrap <name> version v3 server <name> privpwd <value> set vsys <name> log-settings snmptrap <name> version v3 server <name> authproto <SHA|SHA-224|SHA-256|SHA-384|SHA-512> set vsys <name> log-settings snmptrap <name> version v3 server <name> privproto <AES|AES-192|AES-256> set vsys <name> log-settings email set vsys <name> log-settings email <name> set vsys <name> log-settings email <name> server set vsys <name> log-settings email <name> server <name> set vsys <name> log-settings email <name> server <name> display-name <value> set vsys <name> log-settings email <name> server <name> from <value> set vsys <name> log-settings email <name> server <name> to <value> set vsys <name> log-settings email <name> server <name> and-also-to <value> set vsys <name> log-settings email <name> server <name> gateway <value> set vsys <name> log-settings email <name> server <name> protocol <SMTP|TLS> set vsys <name> log-settings email <name> server <name> port <1-65535> set vsys <name> log-settings email <name> server <name> tls-version <1.2|1.1> set vsys <name> log-settings email <name> server <name> auth <Auto|Login|Plain> set vsys <name> log-settings email <name> server <name> certificate-profile <value> set vsys <name> log-settings email <name> server <name> username <value> set vsys <name> log-settings email <name> server <name> password <value> set vsys <name> log-settings email <name> format set vsys <name> log-settings email <name> format traffic <value> set vsys <name> log-settings email <name> format threat <value> set vsys <name> log-settings email <name> format wildfire <value> set vsys <name> log-settings email <name> format url <value> set vsys <name> log-settings email <name> format data <value> set vsys <name> log-settings email <name> format tunnel <value> set vsys <name> log-settings email <name> format auth <value> set vsys <name> log-settings email <name> format userid <value> set vsys <name> log-settings email <name> format iptag <value> set vsys <name> log-settings email <name> format decryption <value> set vsys <name> log-settings email <name> format config <value> set vsys <name> log-settings email <name> format system <value> set vsys <name> log-settings email <name> format hip-match <value> set vsys <name> log-settings email <name> format correlation <value> set vsys <name> log-settings email <name> format escaping set vsys <name> log-settings email <name> format escaping escaped-characters <value> set vsys <name> log-settings email <name> format escaping escape-character <value> set vsys <name> log-settings syslog set vsys <name> log-settings syslog <name> set vsys <name> log-settings syslog <name> server set vsys <name> log-settings syslog <name> server <name> set vsys <name> log-settings syslog <name> server <name> server <value> set vsys <name> log-settings syslog <name> server <name> transport <UDP|TCP|SSL> set vsys <name> log-settings syslog <name> server <name> port <1-65535> set vsys <name> log-settings syslog <name> server <name> format <BSD|IETF> set vsys <name> log-settings syslog <name> server <name> facility <LOG_USER|LOG_LOCAL0|LOG_LOCAL1|LOG_LOCAL2|LOG_LOCAL3|LOG_LOCAL4|LOG_LOCAL5|LOG_LOCAL6|LOG_LOCAL7> set vsys <name> log-settings syslog <name> format set vsys <name> log-settings syslog <name> format traffic <value> set vsys <name> log-settings syslog <name> format threat <value> set vsys <name> log-settings syslog <name> format wildfire <value> set vsys <name> log-settings syslog <name> format url <value> set vsys <name> log-settings syslog <name> format data <value> set vsys <name> log-settings syslog <name> format tunnel <value> set vsys <name> log-settings syslog <name> format auth <value> set vsys <name> log-settings syslog <name> format userid <value> set vsys <name> log-settings syslog <name> format iptag <value> set vsys <name> log-settings syslog <name> format decryption <value> set vsys <name> log-settings syslog <name> format config <value> set vsys <name> log-settings syslog <name> format system <value> set vsys <name> log-settings syslog <name> format hip-match <value> set vsys <name> log-settings syslog <name> format correlation <value> set vsys <name> log-settings syslog <name> format escaping set vsys <name> log-settings syslog <name> format escaping escaped-characters <value> set vsys <name> log-settings syslog <name> format escaping escape-character <value> set vsys <name> log-settings http set vsys <name> log-settings http <name> set vsys <name> log-settings http <name> tag-registration <yes|no> set vsys <name> log-settings http <name> server set vsys <name> log-settings http <name> server <name> set vsys <name> log-settings http <name> server <name> address <value> set vsys <name> log-settings http <name> server <name> protocol <HTTP|HTTPS> set vsys <name> log-settings http <name> server <name> port <1-65535> set vsys <name> log-settings http <name> server <name> tls-version <1.2|1.1|1.0> set vsys <name> log-settings http <name> server <name> certificate-profile <value> set vsys <name> log-settings http <name> server <name> http-method <value> set vsys <name> log-settings http <name> server <name> username <value> set vsys <name> log-settings http <name> server <name> password <value> set vsys <name> log-settings http <name> format set vsys <name> log-settings http <name> format config set vsys <name> log-settings http <name> format config name <value> set vsys <name> log-settings http <name> format config url-format <value> set vsys <name> log-settings http <name> format config headers set vsys <name> log-settings http <name> format config headers <name> set vsys <name> log-settings http <name> format config headers <name> value <value> set vsys <name> log-settings http <name> format config params set vsys <name> log-settings http <name> format config params <name> set vsys <name> log-settings http <name> format config params <name> value <value> set vsys <name> log-settings http <name> format config payload <value> set vsys <name> log-settings http <name> format system set vsys <name> log-settings http <name> format system name <value> set vsys <name> log-settings http <name> format system url-format <value> set vsys <name> log-settings http <name> format system headers set vsys <name> log-settings http <name> format system headers <name> set vsys <name> log-settings http <name> format system headers <name> value <value> set vsys <name> log-settings http <name> format system params set vsys <name> log-settings http <name> format system params <name> set vsys <name> log-settings http <name> format system params <name> value <value> set vsys <name> log-settings http <name> format system payload <value> set vsys <name> log-settings http <name> format traffic set vsys <name> log-settings http <name> format traffic name <value> set vsys <name> log-settings http <name> format traffic url-format <value> set vsys <name> log-settings http <name> format traffic headers set vsys <name> log-settings http <name> format traffic headers <name> set vsys <name> log-settings http <name> format traffic headers <name> value <value> set vsys <name> log-settings http <name> format traffic params set vsys <name> log-settings http <name> format traffic params <name> set vsys <name> log-settings http <name> format traffic params <name> value <value> set vsys <name> log-settings http <name> format traffic payload <value> set vsys <name> log-settings http <name> format threat set vsys <name> log-settings http <name> format threat name <value> set vsys <name> log-settings http <name> format threat url-format <value> set vsys <name> log-settings http <name> format threat headers set vsys <name> log-settings http <name> format threat headers <name> set vsys <name> log-settings http <name> format threat headers <name> value <value> set vsys <name> log-settings http <name> format threat params set vsys <name> log-settings http <name> format threat params <name> set vsys <name> log-settings http <name> format threat params <name> value <value> set vsys <name> log-settings http <name> format threat payload <value> set vsys <name> log-settings http <name> format wildfire set vsys <name> log-settings http <name> format wildfire name <value> set vsys <name> log-settings http <name> format wildfire url-format <value> set vsys <name> log-settings http <name> format wildfire headers set vsys <name> log-settings http <name> format wildfire headers <name> set vsys <name> log-settings http <name> format wildfire headers <name> value <value> set vsys <name> log-settings http <name> format wildfire params set vsys <name> log-settings http <name> format wildfire params <name> set vsys <name> log-settings http <name> format wildfire params <name> value <value> set vsys <name> log-settings http <name> format wildfire payload <value> set vsys <name> log-settings http <name> format url set vsys <name> log-settings http <name> format url name <value> set vsys <name> log-settings http <name> format url url-format <value> set vsys <name> log-settings http <name> format url headers set vsys <name> log-settings http <name> format url headers <name> set vsys <name> log-settings http <name> format url headers <name> value <value> set vsys <name> log-settings http <name> format url params set vsys <name> log-settings http <name> format url params <name> set vsys <name> log-settings http <name> format url params <name> value <value> set vsys <name> log-settings http <name> format url payload <value> set vsys <name> log-settings http <name> format data set vsys <name> log-settings http <name> format data name <value> set vsys <name> log-settings http <name> format data url-format <value> set vsys <name> log-settings http <name> format data headers set vsys <name> log-settings http <name> format data headers <name> set vsys <name> log-settings http <name> format data headers <name> value <value> set vsys <name> log-settings http <name> format data params set vsys <name> log-settings http <name> format data params <name> set vsys <name> log-settings http <name> format data params <name> value <value> set vsys <name> log-settings http <name> format data payload <value> set vsys <name> log-settings http <name> format tunnel set vsys <name> log-settings http <name> format tunnel name <value> set vsys <name> log-settings http <name> format tunnel url-format <value> set vsys <name> log-settings http <name> format tunnel headers set vsys <name> log-settings http <name> format tunnel headers <name> set vsys <name> log-settings http <name> format tunnel headers <name> value <value> set vsys <name> log-settings http <name> format tunnel params set vsys <name> log-settings http <name> format tunnel params <name> set vsys <name> log-settings http <name> format tunnel params <name> value <value> set vsys <name> log-settings http <name> format tunnel payload <value> set vsys <name> log-settings http <name> format auth set vsys <name> log-settings http <name> format auth name <value> set vsys <name> log-settings http <name> format auth url-format <value> set vsys <name> log-settings http <name> format auth headers set vsys <name> log-settings http <name> format auth headers <name> set vsys <name> log-settings http <name> format auth headers <name> value <value> set vsys <name> log-settings http <name> format auth params set vsys <name> log-settings http <name> format auth params <name> set vsys <name> log-settings http <name> format auth params <name> value <value> set vsys <name> log-settings http <name> format auth payload <value> set vsys <name> log-settings http <name> format userid set vsys <name> log-settings http <name> format userid name <value> set vsys <name> log-settings http <name> format userid url-format <value> set vsys <name> log-settings http <name> format userid headers set vsys <name> log-settings http <name> format userid headers <name> set vsys <name> log-settings http <name> format userid headers <name> value <value> set vsys <name> log-settings http <name> format userid params set vsys <name> log-settings http <name> format userid params <name> set vsys <name> log-settings http <name> format userid params <name> value <value> set vsys <name> log-settings http <name> format userid payload <value> set vsys <name> log-settings http <name> format iptag set vsys <name> log-settings http <name> format iptag name <value> set vsys <name> log-settings http <name> format iptag url-format <value> set vsys <name> log-settings http <name> format iptag headers set vsys <name> log-settings http <name> format iptag headers <name> set vsys <name> log-settings http <name> format iptag headers <name> value <value> set vsys <name> log-settings http <name> format iptag params set vsys <name> log-settings http <name> format iptag params <name> set vsys <name> log-settings http <name> format iptag params <name> value <value> set vsys <name> log-settings http <name> format iptag payload <value> set vsys <name> log-settings http <name> format decryption set vsys <name> log-settings http <name> format decryption name <value> set vsys <name> log-settings http <name> format decryption url-format <value> set vsys <name> log-settings http <name> format decryption headers set vsys <name> log-settings http <name> format decryption headers <name> set vsys <name> log-settings http <name> format decryption headers <name> value <value> set vsys <name> log-settings http <name> format decryption params set vsys <name> log-settings http <name> format decryption params <name> set vsys <name> log-settings http <name> format decryption params <name> value <value> set vsys <name> log-settings http <name> format decryption payload <value> set vsys <name> log-settings http <name> format hip-match set vsys <name> log-settings http <name> format hip-match name <value> set vsys <name> log-settings http <name> format hip-match url-format <value> set vsys <name> log-settings http <name> format hip-match headers set vsys <name> log-settings http <name> format hip-match headers <name> set vsys <name> log-settings http <name> format hip-match headers <name> value <value> set vsys <name> log-settings http <name> format hip-match params set vsys <name> log-settings http <name> format hip-match params <name> set vsys <name> log-settings http <name> format hip-match params <name> value <value> set vsys <name> log-settings http <name> format hip-match payload <value> set vsys <name> log-settings http <name> format correlation set vsys <name> log-settings http <name> format correlation name <value> set vsys <name> log-settings http <name> format correlation url-format <value> set vsys <name> log-settings http <name> format correlation headers set vsys <name> log-settings http <name> format correlation headers <name> set vsys <name> log-settings http <name> format correlation headers <name> value <value> set vsys <name> log-settings http <name> format correlation params set vsys <name> log-settings http <name> format correlation params <name> set vsys <name> log-settings http <name> format correlation params <name> value <value> set vsys <name> log-settings http <name> format correlation payload <value> set vsys <name> log-settings profiles set vsys <name> log-settings profiles <name> set vsys <name> log-settings profiles <name> description <value> set vsys <name> log-settings profiles <name> enhanced-application-logging <yes|no> set vsys <name> log-settings profiles <name> match-list set vsys <name> log-settings profiles <name> match-list <name> set vsys <name> log-settings profiles <name> match-list <name> action-desc <value> set vsys <name> log-settings profiles <name> match-list <name> log-type <traffic|threat|wildfire|url|data|tunnel|auth|decryption> set vsys <name> log-settings profiles <name> match-list <name> filter <value> set vsys <name> log-settings profiles <name> match-list <name> send-to-panorama <yes|no> set vsys <name> log-settings profiles <name> match-list <name> send-snmptrap [ <send-snmptrap1> <send-snmptrap2>... ] set vsys <name> log-settings profiles <name> match-list <name> send-email [ <send-email1> <send-email2>... ] set vsys <name> log-settings profiles <name> match-list <name> send-syslog [ <send-syslog1> <send-syslog2>... ] set vsys <name> log-settings profiles <name> match-list <name> send-http [ <send-http1> <send-http2>... ] set vsys <name> log-settings profiles <name> match-list <name> quarantine <yes|no> set vsys <name> log-settings profiles <name> match-list <name> actions set vsys <name> log-settings profiles <name> match-list <name> actions <name> set vsys <name> log-settings profiles <name> match-list <name> actions <name> type set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging target <source-address|destination-address|xff-address|user> set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging action <add-tag|remove-tag> set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration localhost set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration panorama set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration remote set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging registration remote http-profile <value> set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging timeout <0-43200> set vsys <name> log-settings profiles <name> match-list <name> actions <name> type tagging tags [ <tags1> <tags2>... ] set vsys <name> certificate set vsys <name> certificate <name> set vsys <name> certificate <name> common-name <value> set vsys <name> certificate <name> algorithm <value> set vsys <name> certificate <name> not-valid-after <value> set vsys <name> certificate <name> not-valid-before <value> set vsys <name> certificate <name> expiry-epoch <value> set vsys <name> certificate <name> subject <value> set vsys <name> certificate <name> subject-hash <value> set vsys <name> certificate <name> issuer <value> set vsys <name> certificate <name> issuer-hash <value> set vsys <name> certificate <name> csr <value> set vsys <name> certificate <name> public-key <value> set vsys <name> certificate <name> private-key <value> set vsys <name> certificate <name> private-key-on-hsm <yes|no> set vsys <name> certificate <name> status <valid|revoked> set vsys <name> certificate <name> revoke-date-epoch <value> set vsys <name> ssl-tls-service-profile set vsys <name> ssl-tls-service-profile <name> set vsys <name> ssl-tls-service-profile <name> certificate <value> set vsys <name> ssl-tls-service-profile <name> protocol-settings set vsys <name> ssl-tls-service-profile <name> protocol-settings min-version <tls1-0|tls1-1|tls1-2> set vsys <name> ssl-tls-service-profile <name> protocol-settings max-version <tls1-0|tls1-1|tls1-2|max> set vsys <name> ssl-tls-service-profile <name> protocol-settings keyxchg-algo-rsa <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings keyxchg-algo-dhe <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings keyxchg-algo-ecdhe <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-3des <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-rc4 <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-aes-128-cbc <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-aes-256-cbc <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-aes-128-gcm <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-aes-256-gcm <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings auth-algo-sha1 <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings auth-algo-sha256 <yes|no> set vsys <name> ssl-tls-service-profile <name> protocol-settings auth-algo-sha384 <yes|no> set vsys <name> response-page set vsys <name> response-page application-block-page <value> set vsys <name> response-page captive-portal-text <value> set vsys <name> response-page file-block-continue-page <value> set vsys <name> response-page file-block-page <value> set vsys <name> response-page ssl-cert-status-page <value> set vsys <name> response-page ssl-optout-text <value> set vsys <name> response-page url-block-page <value> set vsys <name> response-page url-coach-text <value> set vsys <name> response-page credential-block-page <value> set vsys <name> response-page credential-coach-text <value> set vsys <name> response-page virus-block-page <value> set vsys <name> response-page data-filter-block-page <value> set vsys <name> response-page safe-search-block-page <value> set vsys <name> response-page saml-auth-internal-error-page <value> set vsys <name> response-page mfa-login-page <value> set vsys <name> response-page global-protect-portal-custom-login-page set vsys <name> response-page global-protect-portal-custom-login-page <name> set vsys <name> response-page global-protect-portal-custom-login-page <name> page <value> set vsys <name> response-page global-protect-portal-custom-home-page set vsys <name> response-page global-protect-portal-custom-home-page <name> set vsys <name> response-page global-protect-portal-custom-home-page <name> page <value> set vsys <name> response-page global-protect-portal-custom-help-page set vsys <name> response-page global-protect-portal-custom-help-page <name> set vsys <name> response-page global-protect-portal-custom-help-page <name> page <value> set vsys <name> response-page global-protect-portal-custom-welcome-page set vsys <name> response-page global-protect-portal-custom-welcome-page <name> set vsys <name> response-page global-protect-portal-custom-welcome-page <name> page <value> set vsys <name> local-user-database set vsys <name> local-user-database user set vsys <name> local-user-database user <name> set vsys <name> local-user-database user <name> phash <value> set vsys <name> local-user-database user <name> disabled <yes|no> set vsys <name> local-user-database user-group set vsys <name> local-user-database user-group <name> set vsys <name> local-user-database user-group <name> user [ <user1> <user2>... ] set vsys <name> ssl-decrypt set vsys <name> ssl-decrypt forward-trust-certificate set vsys <name> ssl-decrypt forward-trust-certificate rsa <value> set vsys <name> ssl-decrypt forward-trust-certificate ecdsa <value> set vsys <name> ssl-decrypt forward-untrust-certificate set vsys <name> ssl-decrypt forward-untrust-certificate rsa <value> set vsys <name> ssl-decrypt forward-untrust-certificate ecdsa <value> set vsys <name> ssl-decrypt ssl-exclude-cert set vsys <name> ssl-decrypt ssl-exclude-cert <name> set vsys <name> ssl-decrypt ssl-exclude-cert <name> description <value> set vsys <name> ssl-decrypt ssl-exclude-cert <name> exclude <yes|no> set vsys <name> ssl-decrypt root-ca-exclude-list [ <root-ca-exclude-list1> <root-ca-exclude-list2>... ] set vsys <name> ssl-decrypt trusted-root-CA [ <trusted-root-CA1> <trusted-root-CA2>... ] set vsys <name> ocsp-responder set vsys <name> ocsp-responder <name> set vsys <name> ocsp-responder <name> host-name <value> set vsys <name> scep set vsys <name> scep <name> set vsys <name> scep <name> scep-challenge set vsys <name> scep <name> scep-challenge none set vsys <name> scep <name> scep-challenge fixed <value> set vsys <name> scep <name> scep-challenge dynamic set vsys <name> scep <name> scep-challenge dynamic otp-server-url <value> set vsys <name> scep <name> scep-challenge dynamic username <value> set vsys <name> scep <name> scep-challenge dynamic password <value> set vsys <name> scep <name> scep-url <value> set vsys <name> scep <name> scep-ca-cert <value> set vsys <name> scep <name> scep-client-cert <value> set vsys <name> scep <name> ca-identity-name <value> set vsys <name> scep <name> subject <value> set vsys <name> scep <name> algorithm set vsys <name> scep <name> algorithm rsa set vsys <name> scep <name> algorithm rsa rsa-nbits <value> set vsys <name> scep <name> digest <value> set vsys <name> scep <name> fingerprint <value> set vsys <name> scep <name> certificate-attributes set vsys <name> scep <name> certificate-attributes rfc822name <value> set vsys <name> scep <name> certificate-attributes dnsname <value> set vsys <name> scep <name> certificate-attributes uniform-resource-identifier <value> set vsys <name> scep <name> use-as-digital-signature <yes|no> set vsys <name> scep <name> use-for-key-encipherment <yes|no> set vsys <name> url-content-types [ <url-content-types1> <url-content-types2>... ] set vsys <name> ts-agent set vsys <name> ts-agent <name> set vsys <name> ts-agent <name> host <ip/netmask>|<value> set vsys <name> ts-agent <name> port <1-65535> set vsys <name> ts-agent <name> ip-list [ <ip-list1> <ip-list2>... ] set vsys <name> ts-agent <name> disabled <yes|no> set vsys <name> redistribution-agent set vsys <name> redistribution-agent <name> set vsys <name> redistribution-agent <name> serial-number <value> set vsys <name> redistribution-agent <name> host-port set vsys <name> redistribution-agent <name> host-port host <ip/netmask>|<value> set vsys <name> redistribution-agent <name> host-port ldap-proxy <yes|no> set vsys <name> redistribution-agent <name> host-port port <1-65535> set vsys <name> redistribution-agent <name> host-port collectorname <value> set vsys <name> redistribution-agent <name> host-port secret <value> set vsys <name> redistribution-agent <name> disabled <yes|no> set vsys <name> redistribution-agent <name> ip-user-mappings <yes|no> set vsys <name> redistribution-agent <name> ip-tags <yes|no> set vsys <name> redistribution-agent <name> user-tags <yes|no> set vsys <name> redistribution-agent <name> hip <yes|no> set vsys <name> redistribution-agent <name> quarantine-list <yes|no> set vsys <name> ipuser-include-exclude-list set vsys <name> ipuser-include-exclude-list include-exclude-network set vsys <name> ipuser-include-exclude-list include-exclude-network <name> set vsys <name> ipuser-include-exclude-list include-exclude-network <name> disabled <yes|no> set vsys <name> ipuser-include-exclude-list include-exclude-network <name> discovery <include|exclude> set vsys <name> ipuser-include-exclude-list include-exclude-network <name> network-address <ip/netmask> set vsys <name> iptag-include-exclude-list set vsys <name> iptag-include-exclude-list include-exclude-network set vsys <name> iptag-include-exclude-list include-exclude-network <name> set vsys <name> iptag-include-exclude-list include-exclude-network <name> disabled <yes|no> set vsys <name> iptag-include-exclude-list include-exclude-network <name> discovery <include|exclude> set vsys <name> iptag-include-exclude-list include-exclude-network <name> network-address <ip/netmask> set vsys <name> redistribution-collector set vsys <name> redistribution-collector setting set vsys <name> redistribution-collector setting collectorname <value> set vsys <name> redistribution-collector setting secret <value> set vsys <name> user-id-ssl-auth set vsys <name> user-id-ssl-auth certificate-profile <value> set vsys <name> vm-info-source set vsys <name> vm-info-source <name> set vsys <name> vm-info-source <name> AWS-VPC set vsys <name> vm-info-source <name> AWS-VPC description <value> set vsys <name> vm-info-source <name> AWS-VPC disabled <yes|no> set vsys <name> vm-info-source <name> AWS-VPC source <value> set vsys <name> vm-info-source <name> AWS-VPC access-key-id <value> set vsys <name> vm-info-source <name> AWS-VPC secret-access-key <value> set vsys <name> vm-info-source <name> AWS-VPC update-interval <60-1200> set vsys <name> vm-info-source <name> AWS-VPC vm-info-timeout-enable <yes|no> set vsys <name> vm-info-source <name> AWS-VPC vm-info-timeout <2-10> set vsys <name> vm-info-source <name> AWS-VPC vpc-id <value> set vsys <name> vm-info-source <name> Google-Compute-Engine set vsys <name> vm-info-source <name> Google-Compute-Engine description <value> set vsys <name> vm-info-source <name> Google-Compute-Engine disabled <yes|no> set vsys <name> vm-info-source <name> Google-Compute-Engine service-auth-type set vsys <name> vm-info-source <name> Google-Compute-Engine service-auth-type service-in-gce set vsys <name> vm-info-source <name> Google-Compute-Engine service-auth-type service-account set vsys <name> vm-info-source <name> Google-Compute-Engine service-auth-type service-account service-account-cred <value> set vsys <name> vm-info-source <name> Google-Compute-Engine project-id <value> set vsys <name> vm-info-source <name> Google-Compute-Engine zone-name <value> set vsys <name> vm-info-source <name> Google-Compute-Engine update-interval <60-1200> set vsys <name> vm-info-source <name> Google-Compute-Engine vm-info-timeout-enable <yes|no> set vsys <name> vm-info-source <name> Google-Compute-Engine vm-info-timeout <2-10> set vsys <name> vm-info-source <name> VMware-ESXi set vsys <name> vm-info-source <name> VMware-ESXi description <value> set vsys <name> vm-info-source <name> VMware-ESXi port <1-65535> set vsys <name> vm-info-source <name> VMware-ESXi disabled <yes|no> set vsys <name> vm-info-source <name> VMware-ESXi vm-info-timeout-enable <yes|no> set vsys <name> vm-info-source <name> VMware-ESXi vm-info-timeout <2-10> set vsys <name> vm-info-source <name> VMware-ESXi source <ip/netmask>|<value> set vsys <name> vm-info-source <name> VMware-ESXi username <value> set vsys <name> vm-info-source <name> VMware-ESXi password <value> set vsys <name> vm-info-source <name> VMware-ESXi update-interval <5-600> set vsys <name> vm-info-source <name> VMware-vCenter set vsys <name> vm-info-source <name> VMware-vCenter description <value> set vsys <name> vm-info-source <name> VMware-vCenter port <1-65535> set vsys <name> vm-info-source <name> VMware-vCenter disabled <yes|no> set vsys <name> vm-info-source <name> VMware-vCenter vm-info-timeout-enable <yes|no> set vsys <name> vm-info-source <name> VMware-vCenter vm-info-timeout <2-10> set vsys <name> vm-info-source <name> VMware-vCenter source <ip/netmask>|<value> set vsys <name> vm-info-source <name> VMware-vCenter username <value> set vsys <name> vm-info-source <name> VMware-vCenter password <value> set vsys <name> vm-info-source <name> VMware-vCenter update-interval <5-600> set vsys <name> group-mapping set vsys <name> group-mapping <name> set vsys <name> group-mapping <name> server-profile <value> set vsys <name> group-mapping <name> disabled <yes|no> set vsys <name> group-mapping <name> use-ldap-for-serialno-check <yes|no> set vsys <name> group-mapping <name> use-modify-timestamp <yes|no> set vsys <name> group-mapping <name> limited-group-search <yes|no> set vsys <name> group-mapping <name> nested-group-level <1-20> set vsys <name> group-mapping <name> group-filter <value> set vsys <name> group-mapping <name> user-filter <value> set vsys <name> group-mapping <name> domain <value> set vsys <name> group-mapping <name> update-interval <60-86400> set vsys <name> group-mapping <name> group-object [ <group-object1> <group-object2>... ] set vsys <name> group-mapping <name> group-member [ <group-member1> <group-member2>... ] set vsys <name> group-mapping <name> group-name [ <group-name1> <group-name2>... ] set vsys <name> group-mapping <name> user-object [ <user-object1> <user-object2>... ] set vsys <name> group-mapping <name> user-name [ <user-name1> <user-name2>... ] set vsys <name> group-mapping <name> user-email [ <user-email1> <user-email2>... ] set vsys <name> group-mapping <name> group-email [ <group-email1> <group-email2>... ] set vsys <name> group-mapping <name> alternate-user-name-1 [ <alternate-user-name-11> <alternate-user-name-12>... ] set vsys <name> group-mapping <name> alternate-user-name-2 [ <alternate-user-name-21> <alternate-user-name-22>... ] set vsys <name> group-mapping <name> alternate-user-name-3 [ <alternate-user-name-31> <alternate-user-name-32>... ] set vsys <name> group-mapping <name> container-object [ <container-object1> <container-object2>... ] set vsys <name> group-mapping <name> last-modify-attr [ <last-modify-attr1> <last-modify-attr2>... ] set vsys <name> group-mapping <name> group-include-list [ <group-include-list1> <group-include-list2>... ] set vsys <name> group-mapping <name> custom-group set vsys <name> group-mapping <name> custom-group <name> set vsys <name> group-mapping <name> custom-group <name> ldap-filter <value> set vsys <name> cloud-identity-engine set vsys <name> cloud-identity-engine <name> set vsys <name> cloud-identity-engine <name> region <value> set vsys <name> cloud-identity-engine <name> cloud-identity-engine-instance <value> set vsys <name> cloud-identity-engine <name> domain <value> set vsys <name> cloud-identity-engine <name> update-interval <5-1440> set vsys <name> cloud-identity-engine <name> enabled <yes|no> set vsys <name> cloud-identity-engine <name> primary-user <value> set vsys <name> cloud-identity-engine <name> user-email <value> set vsys <name> cloud-identity-engine <name> alt-username-1 <value> set vsys <name> cloud-identity-engine <name> alt-username-2 <value> set vsys <name> cloud-identity-engine <name> alt-username-3 <value> set vsys <name> cloud-identity-engine <name> group-name <value> set vsys <name> cloud-identity-engine <name> group-email <value> set vsys <name> cloud-identity-engine <name> endpoint-serial-number <value> set vsys <name> captive-portal set vsys <name> captive-portal enable-captive-portal <yes|no> set vsys <name> captive-portal idle-timer <1-1440> set vsys <name> captive-portal timer <1-1440> set vsys <name> captive-portal redirect-host <ip/netmask>|<value> set vsys <name> captive-portal ssl-tls-service-profile <value> set vsys <name> captive-portal gp-udp-port <1-65535> set vsys <name> captive-portal mode set vsys <name> captive-portal mode transparent set vsys <name> captive-portal mode redirect set vsys <name> captive-portal mode redirect session-cookie set vsys <name> captive-portal mode redirect session-cookie enable <yes|no> set vsys <name> captive-portal mode redirect session-cookie timeout <60-10080> set vsys <name> captive-portal mode redirect session-cookie roaming <yes|no> set vsys <name> captive-portal authentication-profile <value> set vsys <name> captive-portal certificate-profile <value> set vsys <name> user-id-collector set vsys <name> user-id-collector setting set vsys <name> user-id-collector setting wmi-account <value> set vsys <name> user-id-collector setting wmi-password <value> set vsys <name> user-id-collector setting domain-name <value> set vsys <name> user-id-collector setting server-profile <value> set vsys <name> user-id-collector setting enable-security-log <yes|no> set vsys <name> user-id-collector setting security-log-interval <1-3600> set vsys <name> user-id-collector setting enable-session <yes|no> set vsys <name> user-id-collector setting session-interval <1-3600> set vsys <name> user-id-collector setting edirectory-query-interval <1-3600> set vsys <name> user-id-collector setting enable-probing <yes|no> set vsys <name> user-id-collector setting client-probing-interval <1-1440> set vsys <name> user-id-collector setting enable-mapping-timeout <yes|no> set vsys <name> user-id-collector setting ip-user-mapping-timeout <1-1440> set vsys <name> user-id-collector setting enable-user-match <yes|no> set vsys <name> user-id-collector setting syslog-service-profile <value> set vsys <name> user-id-collector syslog-parse-profile set vsys <name> user-id-collector syslog-parse-profile <name> set vsys <name> user-id-collector syslog-parse-profile <name> description <value> set vsys <name> user-id-collector syslog-parse-profile <name> regex-identifier set vsys <name> user-id-collector syslog-parse-profile <name> regex-identifier event-regex <value> set vsys <name> user-id-collector syslog-parse-profile <name> regex-identifier username-regex <value> set vsys <name> user-id-collector syslog-parse-profile <name> regex-identifier address-regex <value> set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier event-string <value> set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier username-prefix <value> set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier username-delimiter <value> set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier address-prefix <value> set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier address-delimiter <value> set vsys <name> user-id-collector syslog-parse-profile <name> field-identifier address-per-log <1-3> set vsys <name> user-id-collector server-monitor set vsys <name> user-id-collector server-monitor <name> set vsys <name> user-id-collector server-monitor <name> description <value> set vsys <name> user-id-collector server-monitor <name> disabled <yes|no> set vsys <name> user-id-collector server-monitor <name> active-directory set vsys <name> user-id-collector server-monitor <name> active-directory type <WMI|WinRM-HTTP|WinRM-HTTPS> set vsys <name> user-id-collector server-monitor <name> active-directory host <ip/netmask>|<value> set vsys <name> user-id-collector server-monitor <name> exchange set vsys <name> user-id-collector server-monitor <name> exchange type <WMI|WinRM-HTTP|WinRM-HTTPS> set vsys <name> user-id-collector server-monitor <name> exchange host <ip/netmask>|<value> set vsys <name> user-id-collector server-monitor <name> e-directory set vsys <name> user-id-collector server-monitor <name> e-directory server-profile <value> set vsys <name> user-id-collector server-monitor <name> syslog set vsys <name> user-id-collector server-monitor <name> syslog address <ip/netmask> set vsys <name> user-id-collector server-monitor <name> syslog connection-type <udp|ssl> set vsys <name> user-id-collector server-monitor <name> syslog syslog-parse-profile set vsys <name> user-id-collector server-monitor <name> syslog syslog-parse-profile <name> set vsys <name> user-id-collector server-monitor <name> syslog syslog-parse-profile <name> event-type <login|logout> set vsys <name> user-id-collector server-monitor <name> syslog default-domain-name <value> set vsys <name> user-id-collector include-exclude-network set vsys <name> user-id-collector include-exclude-network <name> set vsys <name> user-id-collector include-exclude-network <name> disabled <yes|no> set vsys <name> user-id-collector include-exclude-network <name> discovery <include|exclude> set vsys <name> user-id-collector include-exclude-network <name> network-address <ip/netmask> set vsys <name> user-id-collector include-exclude-network-sequence set vsys <name> user-id-collector include-exclude-network-sequence include-exclude-network [ <include-exclude-network1> <include-exclude-network2>... ] set vsys <name> user-id-collector ignore-user [ <ignore-user1> <ignore-user2>... ] set vsys <name> url-admin-override set vsys <name> url-admin-override password <value> set vsys <name> url-admin-override ssl-tls-service-profile <value> set vsys <name> url-admin-override mode set vsys <name> url-admin-override mode transparent set vsys <name> url-admin-override mode redirect set vsys <name> url-admin-override mode redirect address <ip/netmask>|<value> set vsys <name> zone set vsys <name> zone <name> set vsys <name> zone <name> enable-user-identification <yes|no> set vsys <name> zone <name> enable-device-identification <yes|no> set vsys <name> zone <name> network set vsys <name> zone <name> network zone-protection-profile <value> set vsys <name> zone <name> network enable-packet-buffer-protection <yes|no> set vsys <name> zone <name> network log-setting <value> set vsys <name> zone <name> network tap [ <tap1> <tap2>... ] set vsys <name> zone <name> network virtual-wire [ <virtual-wire1> <virtual-wire2>... ] set vsys <name> zone <name> network layer2 [ <layer21> <layer22>... ] set vsys <name> zone <name> network layer3 [ <layer31> <layer32>... ] set vsys <name> zone <name> network external [ <external1> <external2>... ] set vsys <name> zone <name> network tunnel set vsys <name> zone <name> user-acl set vsys <name> zone <name> user-acl include-list [ <include-list1> <include-list2>... ] set vsys <name> zone <name> user-acl exclude-list [ <exclude-list1> <exclude-list2>... ] set vsys <name> zone <name> device-acl set vsys <name> zone <name> device-acl include-list [ <include-list1> <include-list2>... ] set vsys <name> zone <name> device-acl exclude-list [ <exclude-list1> <exclude-list2>... ] set vsys <name> sdwan-interface-profile set vsys <name> sdwan-interface-profile <name> set vsys <name> sdwan-interface-profile <name> link-tag <value> set vsys <name> sdwan-interface-profile <name> link-type <ADSL/DSL|Cablemodem|Ethernet|Fiber|LTE/3G/4G/5G|MPLS|Microwave/Radio|Satellite|WiFi|Other> set vsys <name> sdwan-interface-profile <name> vpn-data-tunnel-support <yes|no> set vsys <name> sdwan-interface-profile <name> maximum-download <float> set vsys <name> sdwan-interface-profile <name> maximum-upload <float> set vsys <name> sdwan-interface-profile <name> error-correction <yes|no> set vsys <name> sdwan-interface-profile <name> path-monitoring <Aggressive|Relaxed> set vsys <name> sdwan-interface-profile <name> vpn-failover-metric <1-65535> set vsys <name> sdwan-interface-profile <name> probe-frequency <1-5> set vsys <name> sdwan-interface-profile <name> probe-idle-time <1-86400> set vsys <name> sdwan-interface-profile <name> failback-hold-time <20-120> set vsys <name> sdwan-interface-profile <name> comment <value> set vsys <name> global-protect set vsys <name> global-protect global-protect-portal set vsys <name> global-protect global-protect-portal <name> set vsys <name> global-protect global-protect-portal <name> portal-config set vsys <name> global-protect global-protect-portal <name> portal-config local-address set vsys <name> global-protect global-protect-portal <name> portal-config local-address ip-address-family <ipv4|ipv6|ipv4_ipv6> set vsys <name> global-protect global-protect-portal <name> portal-config local-address interface <value> set vsys <name> global-protect global-protect-portal <name> portal-config local-address ip set vsys <name> global-protect global-protect-portal <name> portal-config local-address ip ipv4 <value> set vsys <name> global-protect global-protect-portal <name> portal-config local-address ip ipv6 <value> set vsys <name> global-protect global-protect-portal <name> portal-config local-address floating-ip set vsys <name> global-protect global-protect-portal <name> portal-config local-address floating-ip ipv4 <value> set vsys <name> global-protect global-protect-portal <name> portal-config local-address floating-ip ipv6 <value> set vsys <name> global-protect global-protect-portal <name> portal-config ssl-tls-service-profile <value> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> os <value>|<Any|Browser|Satellite> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> authentication-profile <value> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> auto-retrieve-passcode <yes|no> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> username-label <value> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> password-label <value> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> authentication-message <value> set vsys <name> global-protect global-protect-portal <name> portal-config client-auth <name> user-credential-or-client-cert-required <no|yes> set vsys <name> global-protect global-protect-portal <name> portal-config certificate-profile <value> set vsys <name> global-protect global-protect-portal <name> portal-config custom-login-page <value> set vsys <name> global-protect global-protect-portal <name> portal-config custom-home-page <value> set vsys <name> global-protect global-protect-portal <name> portal-config custom-help-page <value> set vsys <name> global-protect global-protect-portal <name> portal-config log-success <yes|no> set vsys <name> global-protect global-protect-portal <name> portal-config log-fail <yes|no> set vsys <name> global-protect global-protect-portal <name> portal-config log-setting <value> set vsys <name> global-protect global-protect-portal <name> portal-config config-selection set vsys <name> global-protect global-protect-portal <name> portal-config config-selection certificate-profile <value> set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks windows set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks windows registry-key set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks windows registry-key <name> set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks windows registry-key <name> registry-value [ <registry-value1> <registry-value2>... ] set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks mac-os set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks mac-os plist set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks mac-os plist <name> set vsys <name> global-protect global-protect-portal <name> portal-config config-selection custom-checks mac-os plist <name> key [ <key1> <key2>... ] set vsys <name> global-protect global-protect-portal <name> clientless-vpn set vsys <name> global-protect global-protect-portal <name> clientless-vpn hostname <value> set vsys <name> global-protect global-protect-portal <name> clientless-vpn security-zone <value> set vsys <name> global-protect global-protect-portal <name> clientless-vpn login-lifetime set vsys <name> global-protect global-protect-portal <name> clientless-vpn login-lifetime minutes <60-1440> set vsys <name> global-protect global-protect-portal <name> clientless-vpn login-lifetime hours <1-24> set vsys <name> global-protect global-protect-portal <name> clientless-vpn inactivity-logout set vsys <name> global-protect global-protect-portal <name> clientless-vpn inactivity-logout minutes <5-1440> set vsys <name> global-protect global-protect-portal <name> clientless-vpn inactivity-logout hours <1-24> set vsys <name> global-protect global-protect-portal <name> clientless-vpn max-user <1-30000> set vsys <name> global-protect global-protect-portal <name> clientless-vpn dns-proxy <value> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol min-version <sslv3|tls1-0|tls1-1|tls1-2> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol max-version <sslv3|tls1-0|tls1-1|tls1-2|max> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol keyxchg-algo-rsa <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol keyxchg-algo-dhe <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol keyxchg-algo-ecdhe <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol enc-algo-3des <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol enc-algo-rc4 <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol enc-algo-aes-128-cbc <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol enc-algo-aes-256-cbc <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol enc-algo-aes-128-gcm <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol enc-algo-aes-256-gcm <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol auth-algo-md5 <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol auth-algo-sha1 <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol auth-algo-sha256 <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings ssl-protocol auth-algo-sha384 <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings server-cert-verification set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings server-cert-verification block-expired-certificate <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings server-cert-verification block-untrusted-issuer <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings server-cert-verification block-unknown-cert <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn crypto-settings server-cert-verification block-timeout-cert <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn rewrite-exclude-domain-list [ <rewrite-exclude-domain-list1> <rewrite-exclude-domain-list2>... ] set vsys <name> global-protect global-protect-portal <name> clientless-vpn apps-to-user-mapping set vsys <name> global-protect global-protect-portal <name> clientless-vpn apps-to-user-mapping <name> set vsys <name> global-protect global-protect-portal <name> clientless-vpn apps-to-user-mapping <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> global-protect global-protect-portal <name> clientless-vpn apps-to-user-mapping <name> applications [ <applications1> <applications2>... ] set vsys <name> global-protect global-protect-portal <name> clientless-vpn apps-to-user-mapping <name> enable-custom-app-URL-address-bar <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn apps-to-user-mapping <name> display-global-protect-agent-download-link <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> domains [ <domains1> <domains2>... ] set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> use-proxy <yes|no> set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> proxy-server set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> proxy-server server <value> set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> proxy-server port <1-65535> set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> proxy-server user <value> set vsys <name> global-protect global-protect-portal <name> clientless-vpn proxy-server-setting <name> proxy-server password <value> set vsys <name> global-protect global-protect-portal <name> client-config set vsys <name> global-protect global-protect-portal <name> client-config root-ca set vsys <name> global-protect global-protect-portal <name> client-config root-ca <name> set vsys <name> global-protect global-protect-portal <name> client-config root-ca <name> install-in-cert-store <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config agent-user-override-key <value> set vsys <name> global-protect global-protect-portal <name> client-config configs set vsys <name> global-protect global-protect-portal <name> client-config configs <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> save-user-credentials <0|1|2|3> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> portal-2fa <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-gateway-2fa <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> auto-discovery-external-gateway-2fa <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> manual-only-gateway-2fa <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> certificate set vsys <name> global-protect global-protect-portal <name> client-config configs <name> certificate criteria set vsys <name> global-protect global-protect-portal <name> client-config configs <name> certificate criteria certificate-profile <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> default-value-data <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> negate <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> registry-value set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> registry-value <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> registry-value <name> value-data <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria registry-key <name> registry-value <name> negate <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist <name> negate <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist <name> key set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist <name> key <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist <name> key <name> value <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> custom-checks criteria plist <name> key <name> negate <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> machine-account-exists-with-serialno set vsys <name> global-protect global-protect-portal <name> client-config configs <name> machine-account-exists-with-serialno no set vsys <name> global-protect global-protect-portal <name> client-config configs <name> machine-account-exists-with-serialno yes set vsys <name> global-protect global-protect-portal <name> client-config configs <name> refresh-config <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list <name> fqdn <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list <name> ip set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list <name> ip ipv4 <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list <name> ip ipv6 <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal list <name> source-ip [ <source-ip1> <source-ip2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways internal dhcp-option-code [ <dhcp-option-code1> <dhcp-option-code2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external cutoff-time <0-10> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> fqdn <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> ip set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> ip ipv4 <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> ip ipv6 <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> priority-rule set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> priority-rule <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> priority-rule <name> priority <0|1|2|3|4|5> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gateways external list <name> manual <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-host-detection set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-host-detection ip-address <ip/netmask> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-host-detection hostname <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-host-detection-v6 set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-host-detection-v6 ip-address <ip/netmask> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> internal-host-detection-v6 hostname <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui passcode <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui uninstall-password <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui agent-user-override-timeout <0-65535> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui max-agent-user-overrides <0-65535> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui welcome-page set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-ui welcome-page page <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection certificate-profile <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection exclusion set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection exclusion category set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection exclusion category <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection exclusion category <name> vendor set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection exclusion category <name> vendor <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection exclusion category <name> vendor <name> product [ <product1> <product2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks windows set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks windows registry-key set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks windows registry-key <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks windows registry-key <name> registry-value [ <registry-value1> <registry-value2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks windows process-list [ <process-list1> <process-list2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks mac-os set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks mac-os plist set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks mac-os plist <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks mac-os plist <name> key [ <key1> <key2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks mac-os process-list [ <process-list1> <process-list2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks linux set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection custom-checks linux process-list [ <process-list1> <process-list2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection max-wait-time <10-60> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> hip-collection collect-hip-data <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> third-party-vpn-clients [ <third-party-vpn-clients1> <third-party-vpn-clients2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> agent-config set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gp-app-config set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gp-app-config config set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gp-app-config config <name> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> gp-app-config config <name> value [ <value1> <value2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> os [ <os1> <os2>... ] set vsys <name> global-protect global-protect-portal <name> client-config configs <name> mdm-address <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> mdm-enrollment-port <443|7443|8443> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> client-certificate set vsys <name> global-protect global-protect-portal <name> client-config configs <name> client-certificate local <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> client-certificate scep <value> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override generate-cookie <yes|no> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override accept-cookie set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override accept-cookie cookie-lifetime set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override accept-cookie cookie-lifetime lifetime-in-days <1-365> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override accept-cookie cookie-lifetime lifetime-in-hours <1-72> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override accept-cookie cookie-lifetime lifetime-in-minutes <1-59> set vsys <name> global-protect global-protect-portal <name> client-config configs <name> authentication-override cookie-encrypt-decrypt-cert <value> set vsys <name> global-protect global-protect-portal <name> satellite-config set vsys <name> global-protect global-protect-portal <name> satellite-config root-ca [ <root-ca1> <root-ca2>... ] set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate local set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate local issuing-certificate <value> set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate local ocsp-responder <value> set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate local certificate-life-time <7-365> set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate local certificate-renewal-period <3-30> set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate scep set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate scep scep <value> set vsys <name> global-protect global-protect-portal <name> satellite-config client-certificate scep certificate-renewal-period <3-30> set vsys <name> global-protect global-protect-portal <name> satellite-config configs set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> devices [ <devices1> <devices2>... ] set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> fqdn <value> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> ip set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> ip ipv4 <value> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> ip ipv6 <value> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> ipv6-preferred <yes|no> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> gateways <name> priority <1-25> set vsys <name> global-protect global-protect-portal <name> satellite-config configs <name> config-refresh-interval <1-48> set vsys <name> global-protect global-protect-gateway set vsys <name> global-protect global-protect-gateway <name> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel <value> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override generate-cookie <yes|no> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override accept-cookie set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override accept-cookie cookie-lifetime set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override accept-cookie cookie-lifetime lifetime-in-days <1-365> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override accept-cookie cookie-lifetime lifetime-in-hours <1-72> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override accept-cookie cookie-lifetime lifetime-in-minutes <1-59> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-override cookie-encrypt-decrypt-cert <value> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> os [ <os1> <os2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> source-address set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> source-address region [ <region1> <region2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> source-address ip-address [ <ip-address1> <ip-address2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> dns-server [ <dns-server1> <dns-server2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> dns-suffix [ <dns-suffix1> <dns-suffix2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> ip-pool [ <ip-pool1> <ip-pool2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling access-route [ <access-route1> <access-route2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling exclude-access-route [ <exclude-access-route1> <exclude-access-route2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling include-applications [ <include-applications1> <include-applications2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling include-domains set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling include-domains list set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling include-domains list <name> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling include-domains list <name> ports [ <ports1> <ports2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling exclude-applications [ <exclude-applications1> <exclude-applications2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling exclude-domains set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling exclude-domains list set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling exclude-domains list <name> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> split-tunneling exclude-domains list <name> ports [ <ports1> <ports2>... ] set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> no-direct-access-to-local-network <yes|no> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> retrieve-framed-ip-address <yes|no> set vsys <name> global-protect global-protect-gateway <name> remote-user-tunnel-configs <name> authentication-server-ip-pool [ <authentication-server-ip-pool1> <authentication-server-ip-pool2>... ] set vsys <name> global-protect global-protect-gateway <name> ssl-tls-service-profile <value> set vsys <name> global-protect global-protect-gateway <name> client-auth set vsys <name> global-protect global-protect-gateway <name> client-auth <name> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> os <value>|<Any|Satellite|X-Auth> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> authentication-profile <value> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> auto-retrieve-passcode <yes|no> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> username-label <value> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> password-label <value> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> authentication-message <value> set vsys <name> global-protect global-protect-gateway <name> client-auth <name> user-credential-or-client-cert-required <no|yes> set vsys <name> global-protect global-protect-gateway <name> certificate-profile <value> set vsys <name> global-protect global-protect-gateway <name> satellite-tunnel <value> set vsys <name> global-protect global-protect-gateway <name> tunnel-mode <yes|no> set vsys <name> global-protect global-protect-gateway <name> local-address set vsys <name> global-protect global-protect-gateway <name> local-address ip-address-family <ipv4|ipv6|ipv4_ipv6> set vsys <name> global-protect global-protect-gateway <name> local-address interface <value> set vsys <name> global-protect global-protect-gateway <name> local-address ip set vsys <name> global-protect global-protect-gateway <name> local-address ip ipv4 <value> set vsys <name> global-protect global-protect-gateway <name> local-address ip ipv6 <value> set vsys <name> global-protect global-protect-gateway <name> local-address floating-ip set vsys <name> global-protect global-protect-gateway <name> local-address floating-ip ipv4 <value> set vsys <name> global-protect global-protect-gateway <name> local-address floating-ip ipv6 <value> set vsys <name> global-protect global-protect-gateway <name> security-restrictions set vsys <name> global-protect global-protect-gateway <name> security-restrictions disallow-automatic-restoration <yes|no> set vsys <name> global-protect global-protect-gateway <name> security-restrictions source-ip-enforcement set vsys <name> global-protect global-protect-gateway <name> security-restrictions source-ip-enforcement enable <yes|no> set vsys <name> global-protect global-protect-gateway <name> security-restrictions source-ip-enforcement default set vsys <name> global-protect global-protect-gateway <name> security-restrictions source-ip-enforcement custom set vsys <name> global-protect global-protect-gateway <name> security-restrictions source-ip-enforcement custom source-ipv4-netmask <0-32> set vsys <name> global-protect global-protect-gateway <name> security-restrictions source-ip-enforcement custom source-ipv6-netmask <0-128> set vsys <name> global-protect global-protect-gateway <name> block-quarantined-devices <yes|no> set vsys <name> global-protect global-protect-gateway <name> roles set vsys <name> global-protect global-protect-gateway <name> roles <name> set vsys <name> global-protect global-protect-gateway <name> roles <name> login-lifetime set vsys <name> global-protect global-protect-gateway <name> roles <name> login-lifetime minutes <120-43200> set vsys <name> global-protect global-protect-gateway <name> roles <name> login-lifetime hours <2-720> set vsys <name> global-protect global-protect-gateway <name> roles <name> login-lifetime days <1-30> set vsys <name> global-protect global-protect-gateway <name> roles <name> inactivity-logout <5-43200> set vsys <name> global-protect global-protect-gateway <name> hip-notification set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> match-message set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> match-message include-app-list <yes|no> set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> match-message show-notification-as <system-tray-balloon|pop-up-message> set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> match-message message <value> set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> not-match-message set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> not-match-message show-notification-as <system-tray-balloon|pop-up-message> set vsys <name> global-protect global-protect-gateway <name> hip-notification <name> not-match-message message <value> set vsys <name> global-protect global-protect-gateway <name> log-success <yes|no> set vsys <name> global-protect global-protect-gateway <name> log-fail <yes|no> set vsys <name> global-protect global-protect-gateway <name> log-setting <value> set vsys <name> global-protect global-protect-mdm set vsys <name> global-protect global-protect-mdm <name> set vsys <name> global-protect global-protect-mdm <name> disabled <yes|no> set vsys <name> global-protect global-protect-mdm <name> host <value> set vsys <name> global-protect global-protect-mdm <name> port <1-65535> set vsys <name> global-protect global-protect-mdm <name> root-ca [ <root-ca1> <root-ca2>... ] set vsys <name> global-protect global-protect-mdm <name> client-certificate <value> set vsys <name> global-protect clientless-app set vsys <name> global-protect clientless-app <name> set vsys <name> global-protect clientless-app <name> application-home-url <value> set vsys <name> global-protect clientless-app <name> description <value> set vsys <name> global-protect clientless-app <name> app-icon <value> set vsys <name> global-protect clientless-app-group set vsys <name> global-protect clientless-app-group <name> set vsys <name> global-protect clientless-app-group <name> members [ <members1> <members2>... ] set vsys <name> profiles set vsys <name> profiles hip-objects set vsys <name> profiles hip-objects <name> set vsys <name> profiles hip-objects <name> description <value> set vsys <name> profiles hip-objects <name> host-info set vsys <name> profiles hip-objects <name> host-info criteria set vsys <name> profiles hip-objects <name> host-info criteria domain set vsys <name> profiles hip-objects <name> host-info criteria domain contains <value> set vsys <name> profiles hip-objects <name> host-info criteria domain is <value> set vsys <name> profiles hip-objects <name> host-info criteria domain is-not <value> set vsys <name> profiles hip-objects <name> host-info criteria os set vsys <name> profiles hip-objects <name> host-info criteria os contains set vsys <name> profiles hip-objects <name> host-info criteria os contains Microsoft <value> set vsys <name> profiles hip-objects <name> host-info criteria os contains Apple <value> set vsys <name> profiles hip-objects <name> host-info criteria os contains Google <value> set vsys <name> profiles hip-objects <name> host-info criteria os contains Linux <value> set vsys <name> profiles hip-objects <name> host-info criteria os contains Other <value> set vsys <name> profiles hip-objects <name> host-info criteria client-version set vsys <name> profiles hip-objects <name> host-info criteria client-version contains <value> set vsys <name> profiles hip-objects <name> host-info criteria client-version is <value> set vsys <name> profiles hip-objects <name> host-info criteria client-version is-not <value> set vsys <name> profiles hip-objects <name> host-info criteria host-name set vsys <name> profiles hip-objects <name> host-info criteria host-name contains <value> set vsys <name> profiles hip-objects <name> host-info criteria host-name is <value> set vsys <name> profiles hip-objects <name> host-info criteria host-name is-not <value> set vsys <name> profiles hip-objects <name> host-info criteria host-id set vsys <name> profiles hip-objects <name> host-info criteria host-id contains <value> set vsys <name> profiles hip-objects <name> host-info criteria host-id is <value> set vsys <name> profiles hip-objects <name> host-info criteria host-id is-not <value> set vsys <name> profiles hip-objects <name> host-info criteria managed <no|yes> set vsys <name> profiles hip-objects <name> host-info criteria serial-number set vsys <name> profiles hip-objects <name> host-info criteria serial-number contains <value> set vsys <name> profiles hip-objects <name> host-info criteria serial-number is <value> set vsys <name> profiles hip-objects <name> host-info criteria serial-number is-not <value> set vsys <name> profiles hip-objects <name> network-info set vsys <name> profiles hip-objects <name> network-info criteria set vsys <name> profiles hip-objects <name> network-info criteria network set vsys <name> profiles hip-objects <name> network-info criteria network is set vsys <name> profiles hip-objects <name> network-info criteria network is wifi set vsys <name> profiles hip-objects <name> network-info criteria network is wifi ssid <value> set vsys <name> profiles hip-objects <name> network-info criteria network is mobile set vsys <name> profiles hip-objects <name> network-info criteria network is mobile carrier <value> set vsys <name> profiles hip-objects <name> network-info criteria network is unknown set vsys <name> profiles hip-objects <name> network-info criteria network is-not set vsys <name> profiles hip-objects <name> network-info criteria network is-not wifi set vsys <name> profiles hip-objects <name> network-info criteria network is-not wifi ssid <value> set vsys <name> profiles hip-objects <name> network-info criteria network is-not mobile set vsys <name> profiles hip-objects <name> network-info criteria network is-not mobile carrier <value> set vsys <name> profiles hip-objects <name> network-info criteria network is-not ethernet set vsys <name> profiles hip-objects <name> network-info criteria network is-not unknown set vsys <name> profiles hip-objects <name> patch-management set vsys <name> profiles hip-objects <name> patch-management criteria set vsys <name> profiles hip-objects <name> patch-management criteria is-installed <yes|no> set vsys <name> profiles hip-objects <name> patch-management criteria is-enabled <no|yes|not-available> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity greater-equal <0-100000> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity greater-than <0-100000> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity is <0-100000> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity is-not <0-100000> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity less-equal <0-100000> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches severity less-than <0-100000> set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches patches [ <patches1> <patches2>... ] set vsys <name> profiles hip-objects <name> patch-management criteria missing-patches check <has-any|has-none|has-all> set vsys <name> profiles hip-objects <name> patch-management vendor set vsys <name> profiles hip-objects <name> patch-management vendor <name> set vsys <name> profiles hip-objects <name> patch-management vendor <name> product [ <product1> <product2>... ] set vsys <name> profiles hip-objects <name> patch-management exclude-vendor <yes|no> set vsys <name> profiles hip-objects <name> data-loss-prevention set vsys <name> profiles hip-objects <name> data-loss-prevention criteria set vsys <name> profiles hip-objects <name> data-loss-prevention criteria is-installed <yes|no> set vsys <name> profiles hip-objects <name> data-loss-prevention criteria is-enabled <no|yes|not-available> set vsys <name> profiles hip-objects <name> data-loss-prevention vendor set vsys <name> profiles hip-objects <name> data-loss-prevention vendor <name> set vsys <name> profiles hip-objects <name> data-loss-prevention vendor <name> product [ <product1> <product2>... ] set vsys <name> profiles hip-objects <name> data-loss-prevention exclude-vendor <yes|no> set vsys <name> profiles hip-objects <name> firewall set vsys <name> profiles hip-objects <name> firewall criteria set vsys <name> profiles hip-objects <name> firewall criteria is-installed <yes|no> set vsys <name> profiles hip-objects <name> firewall criteria is-enabled <no|yes|not-available> set vsys <name> profiles hip-objects <name> firewall vendor set vsys <name> profiles hip-objects <name> firewall vendor <name> set vsys <name> profiles hip-objects <name> firewall vendor <name> product [ <product1> <product2>... ] set vsys <name> profiles hip-objects <name> firewall exclude-vendor <yes|no> set vsys <name> profiles hip-objects <name> anti-malware set vsys <name> profiles hip-objects <name> anti-malware criteria set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version within set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version within days <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version within versions <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version not-within set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version not-within days <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria virdef-version not-within versions <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version set vsys <name> profiles hip-objects <name> anti-malware criteria product-version greater-equal <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version greater-than <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version is <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version is-not <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version less-equal <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version less-than <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version contains <value> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version within set vsys <name> profiles hip-objects <name> anti-malware criteria product-version within versions <1-1> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version not-within set vsys <name> profiles hip-objects <name> anti-malware criteria product-version not-within versions <1-1> set vsys <name> profiles hip-objects <name> anti-malware criteria is-installed <yes|no> set vsys <name> profiles hip-objects <name> anti-malware criteria real-time-protection <no|yes|not-available> set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time not-available set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time within set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time within days <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time within hours <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time not-within set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time not-within days <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria last-scan-time not-within hours <1-65535> set vsys <name> profiles hip-objects <name> anti-malware vendor set vsys <name> profiles hip-objects <name> anti-malware vendor <name> set vsys <name> profiles hip-objects <name> anti-malware vendor <name> product [ <product1> <product2>... ] set vsys <name> profiles hip-objects <name> anti-malware exclude-vendor <yes|no> set vsys <name> profiles hip-objects <name> disk-backup set vsys <name> profiles hip-objects <name> disk-backup criteria set vsys <name> profiles hip-objects <name> disk-backup criteria is-installed <yes|no> set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time not-available set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time within set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time within days <1-65535> set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time within hours <1-65535> set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time not-within set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time not-within days <1-65535> set vsys <name> profiles hip-objects <name> disk-backup criteria last-backup-time not-within hours <1-65535> set vsys <name> profiles hip-objects <name> disk-backup vendor set vsys <name> profiles hip-objects <name> disk-backup vendor <name> set vsys <name> profiles hip-objects <name> disk-backup vendor <name> product [ <product1> <product2>... ] set vsys <name> profiles hip-objects <name> disk-backup exclude-vendor <yes|no> set vsys <name> profiles hip-objects <name> disk-encryption set vsys <name> profiles hip-objects <name> disk-encryption criteria set vsys <name> profiles hip-objects <name> disk-encryption criteria is-installed <yes|no> set vsys <name> profiles hip-objects <name> disk-encryption criteria encrypted-locations set vsys <name> profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> set vsys <name> profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> encryption-state set vsys <name> profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> encryption-state is <encrypted|unencrypted|partial|unknown> set vsys <name> profiles hip-objects <name> disk-encryption criteria encrypted-locations <name> encryption-state is-not <encrypted|unencrypted|partial|unknown> set vsys <name> profiles hip-objects <name> disk-encryption vendor set vsys <name> profiles hip-objects <name> disk-encryption vendor <name> set vsys <name> profiles hip-objects <name> disk-encryption vendor <name> product [ <product1> <product2>... ] set vsys <name> profiles hip-objects <name> disk-encryption exclude-vendor <yes|no> set vsys <name> profiles hip-objects <name> custom-checks set vsys <name> profiles hip-objects <name> custom-checks criteria set vsys <name> profiles hip-objects <name> custom-checks criteria process-list set vsys <name> profiles hip-objects <name> custom-checks criteria process-list <name> set vsys <name> profiles hip-objects <name> custom-checks criteria process-list <name> running <yes|no> set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> default-value-data <value> set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> negate <yes|no> set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value <name> set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value <name> value-data <value> set vsys <name> profiles hip-objects <name> custom-checks criteria registry-key <name> registry-value <name> negate <yes|no> set vsys <name> profiles hip-objects <name> custom-checks criteria plist set vsys <name> profiles hip-objects <name> custom-checks criteria plist <name> set vsys <name> profiles hip-objects <name> custom-checks criteria plist <name> negate <yes|no> set vsys <name> profiles hip-objects <name> custom-checks criteria plist <name> key set vsys <name> profiles hip-objects <name> custom-checks criteria plist <name> key <name> set vsys <name> profiles hip-objects <name> custom-checks criteria plist <name> key <name> value <value> set vsys <name> profiles hip-objects <name> custom-checks criteria plist <name> key <name> negate <yes|no> set vsys <name> profiles hip-objects <name> mobile-device set vsys <name> profiles hip-objects <name> mobile-device criteria set vsys <name> profiles hip-objects <name> mobile-device criteria jailbroken <no|yes> set vsys <name> profiles hip-objects <name> mobile-device criteria disk-encrypted <no|yes> set vsys <name> profiles hip-objects <name> mobile-device criteria passcode-set <no|yes> set vsys <name> profiles hip-objects <name> mobile-device criteria last-checkin-time set vsys <name> profiles hip-objects <name> mobile-device criteria last-checkin-time within set vsys <name> profiles hip-objects <name> mobile-device criteria last-checkin-time within days <1-365> set vsys <name> profiles hip-objects <name> mobile-device criteria last-checkin-time not-within set vsys <name> profiles hip-objects <name> mobile-device criteria last-checkin-time not-within days <1-365> set vsys <name> profiles hip-objects <name> mobile-device criteria imei set vsys <name> profiles hip-objects <name> mobile-device criteria imei contains <value> set vsys <name> profiles hip-objects <name> mobile-device criteria imei is <value> set vsys <name> profiles hip-objects <name> mobile-device criteria imei is-not <value> set vsys <name> profiles hip-objects <name> mobile-device criteria model set vsys <name> profiles hip-objects <name> mobile-device criteria model contains <value> set vsys <name> profiles hip-objects <name> mobile-device criteria model is <value> set vsys <name> profiles hip-objects <name> mobile-device criteria model is-not <value> set vsys <name> profiles hip-objects <name> mobile-device criteria phone-number set vsys <name> profiles hip-objects <name> mobile-device criteria phone-number contains <value> set vsys <name> profiles hip-objects <name> mobile-device criteria phone-number is <value> set vsys <name> profiles hip-objects <name> mobile-device criteria phone-number is-not <value> set vsys <name> profiles hip-objects <name> mobile-device criteria tag set vsys <name> profiles hip-objects <name> mobile-device criteria tag contains <value> set vsys <name> profiles hip-objects <name> mobile-device criteria tag is <value> set vsys <name> profiles hip-objects <name> mobile-device criteria tag is-not <value> set vsys <name> profiles hip-objects <name> mobile-device criteria applications set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware no set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware yes set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes <name> set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes <name> package <value> set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-malware yes excludes <name> hash <value> set vsys <name> profiles hip-objects <name> mobile-device criteria applications has-unmanaged-app <no|yes> set vsys <name> profiles hip-objects <name> mobile-device criteria applications includes set vsys <name> profiles hip-objects <name> mobile-device criteria applications includes <name> set vsys <name> profiles hip-objects <name> mobile-device criteria applications includes <name> package <value> set vsys <name> profiles hip-objects <name> mobile-device criteria applications includes <name> hash <value> set vsys <name> profiles hip-objects <name> certificate set vsys <name> profiles hip-objects <name> certificate criteria set vsys <name> profiles hip-objects <name> certificate criteria certificate-profile <value> set vsys <name> profiles hip-objects <name> certificate criteria certificate-attributes set vsys <name> profiles hip-objects <name> certificate criteria certificate-attributes <name> set vsys <name> profiles hip-objects <name> certificate criteria certificate-attributes <name> value <value> set vsys <name> profiles virus set vsys <name> profiles virus <name> set vsys <name> profiles virus <name> description <value> set vsys <name> profiles virus <name> packet-capture <yes|no> set vsys <name> profiles virus <name> mlav-engine-filebased-enabled set vsys <name> profiles virus <name> mlav-engine-filebased-enabled <name> set vsys <name> profiles virus <name> mlav-engine-filebased-enabled <name> mlav-policy-action <enable|enable(alert-only)|disable> set vsys <name> profiles virus <name> decoder set vsys <name> profiles virus <name> decoder <name> set vsys <name> profiles virus <name> decoder <name> action <default|allow|alert|drop|reset-client|reset-server|reset-both> set vsys <name> profiles virus <name> decoder <name> wildfire-action <default|allow|alert|drop|reset-client|reset-server|reset-both> set vsys <name> profiles virus <name> decoder <name> mlav-action <default|allow|alert|drop|reset-client|reset-server|reset-both> set vsys <name> profiles virus <name> application set vsys <name> profiles virus <name> application <name> set vsys <name> profiles virus <name> application <name> action <default|allow|alert|drop|reset-client|reset-server|reset-both> set vsys <name> profiles virus <name> threat-exception set vsys <name> profiles virus <name> threat-exception <name> set vsys <name> profiles virus <name> mlav-exception set vsys <name> profiles virus <name> mlav-exception <name> set vsys <name> profiles virus <name> mlav-exception <name> filename <value> set vsys <name> profiles virus <name> mlav-exception <name> description <value> set vsys <name> profiles spyware set vsys <name> profiles spyware <name> set vsys <name> profiles spyware <name> description <value> set vsys <name> profiles spyware <name> botnet-domains set vsys <name> profiles spyware <name> botnet-domains lists set vsys <name> profiles spyware <name> botnet-domains lists <name> set vsys <name> profiles spyware <name> botnet-domains lists <name> action set vsys <name> profiles spyware <name> botnet-domains lists <name> action alert set vsys <name> profiles spyware <name> botnet-domains lists <name> action allow set vsys <name> profiles spyware <name> botnet-domains lists <name> action block set vsys <name> profiles spyware <name> botnet-domains lists <name> action sinkhole set vsys <name> profiles spyware <name> botnet-domains lists <name> packet-capture <disable|single-packet|extended-capture> set vsys <name> profiles spyware <name> botnet-domains dns-security-categories set vsys <name> profiles spyware <name> botnet-domains dns-security-categories <name> set vsys <name> profiles spyware <name> botnet-domains dns-security-categories <name> action <default|allow|block|sinkhole> set vsys <name> profiles spyware <name> botnet-domains dns-security-categories <name> log-level <default|none|low|informational|medium|high|critical> set vsys <name> profiles spyware <name> botnet-domains dns-security-categories <name> packet-capture <disable|single-packet|extended-capture> set vsys <name> profiles spyware <name> botnet-domains whitelist set vsys <name> profiles spyware <name> botnet-domains whitelist <name> set vsys <name> profiles spyware <name> botnet-domains whitelist <name> description <value> set vsys <name> profiles spyware <name> botnet-domains sinkhole set vsys <name> profiles spyware <name> botnet-domains sinkhole ipv4-address <value>|<127.0.0.1|pan-sinkhole-default-ip> set vsys <name> profiles spyware <name> botnet-domains sinkhole ipv6-address <ip/netmask>|<::1> set vsys <name> profiles spyware <name> botnet-domains threat-exception set vsys <name> profiles spyware <name> botnet-domains threat-exception <name> set vsys <name> profiles spyware <name> rules set vsys <name> profiles spyware <name> rules <name> set vsys <name> profiles spyware <name> rules <name> threat-name <value>|<any> set vsys <name> profiles spyware <name> rules <name> category <value>|<any> set vsys <name> profiles spyware <name> rules <name> severity [ <severity1> <severity2>... ] set vsys <name> profiles spyware <name> rules <name> action set vsys <name> profiles spyware <name> rules <name> action default set vsys <name> profiles spyware <name> rules <name> action allow set vsys <name> profiles spyware <name> rules <name> action alert set vsys <name> profiles spyware <name> rules <name> action drop set vsys <name> profiles spyware <name> rules <name> action reset-client set vsys <name> profiles spyware <name> rules <name> action reset-server set vsys <name> profiles spyware <name> rules <name> action reset-both set vsys <name> profiles spyware <name> rules <name> action block-ip set vsys <name> profiles spyware <name> rules <name> action block-ip track-by <source|source-and-destination> set vsys <name> profiles spyware <name> rules <name> action block-ip duration <1-3600> set vsys <name> profiles spyware <name> rules <name> packet-capture <disable|single-packet|extended-capture> set vsys <name> profiles spyware <name> threat-exception set vsys <name> profiles spyware <name> threat-exception <name> set vsys <name> profiles spyware <name> threat-exception <name> packet-capture <disable|single-packet|extended-capture> set vsys <name> profiles spyware <name> threat-exception <name> action set vsys <name> profiles spyware <name> threat-exception <name> action default set vsys <name> profiles spyware <name> threat-exception <name> action allow set vsys <name> profiles spyware <name> threat-exception <name> action alert set vsys <name> profiles spyware <name> threat-exception <name> action drop set vsys <name> profiles spyware <name> threat-exception <name> action reset-both set vsys <name> profiles spyware <name> threat-exception <name> action reset-client set vsys <name> profiles spyware <name> threat-exception <name> action reset-server set vsys <name> profiles spyware <name> threat-exception <name> action block-ip set vsys <name> profiles spyware <name> threat-exception <name> action block-ip track-by <source|source-and-destination> set vsys <name> profiles spyware <name> threat-exception <name> action block-ip duration <1-3600> set vsys <name> profiles spyware <name> threat-exception <name> exempt-ip set vsys <name> profiles spyware <name> threat-exception <name> exempt-ip <name> set vsys <name> profiles vulnerability set vsys <name> profiles vulnerability <name> set vsys <name> profiles vulnerability <name> description <value> set vsys <name> profiles vulnerability <name> rules set vsys <name> profiles vulnerability <name> rules <name> set vsys <name> profiles vulnerability <name> rules <name> threat-name <value>|<any> set vsys <name> profiles vulnerability <name> rules <name> cve [ <cve1> <cve2>... ] set vsys <name> profiles vulnerability <name> rules <name> host <any|client|server> set vsys <name> profiles vulnerability <name> rules <name> vendor-id [ <vendor-id1> <vendor-id2>... ] set vsys <name> profiles vulnerability <name> rules <name> severity [ <severity1> <severity2>... ] set vsys <name> profiles vulnerability <name> rules <name> category <value>|<any> set vsys <name> profiles vulnerability <name> rules <name> action set vsys <name> profiles vulnerability <name> rules <name> action default set vsys <name> profiles vulnerability <name> rules <name> action allow set vsys <name> profiles vulnerability <name> rules <name> action alert set vsys <name> profiles vulnerability <name> rules <name> action drop set vsys <name> profiles vulnerability <name> rules <name> action reset-client set vsys <name> profiles vulnerability <name> rules <name> action reset-server set vsys <name> profiles vulnerability <name> rules <name> action reset-both set vsys <name> profiles vulnerability <name> rules <name> action block-ip set vsys <name> profiles vulnerability <name> rules <name> action block-ip track-by <source|source-and-destination> set vsys <name> profiles vulnerability <name> rules <name> action block-ip duration <1-3600> set vsys <name> profiles vulnerability <name> rules <name> packet-capture <disable|single-packet|extended-capture> set vsys <name> profiles vulnerability <name> threat-exception set vsys <name> profiles vulnerability <name> threat-exception <name> set vsys <name> profiles vulnerability <name> threat-exception <name> packet-capture <disable|single-packet|extended-capture> set vsys <name> profiles vulnerability <name> threat-exception <name> action set vsys <name> profiles vulnerability <name> threat-exception <name> action default set vsys <name> profiles vulnerability <name> threat-exception <name> action allow set vsys <name> profiles vulnerability <name> threat-exception <name> action alert set vsys <name> profiles vulnerability <name> threat-exception <name> action drop set vsys <name> profiles vulnerability <name> threat-exception <name> action reset-client set vsys <name> profiles vulnerability <name> threat-exception <name> action reset-server set vsys <name> profiles vulnerability <name> threat-exception <name> action reset-both set vsys <name> profiles vulnerability <name> threat-exception <name> action block-ip set vsys <name> profiles vulnerability <name> threat-exception <name> action block-ip track-by <source|source-and-destination> set vsys <name> profiles vulnerability <name> threat-exception <name> action block-ip duration <1-3600> set vsys <name> profiles vulnerability <name> threat-exception <name> time-attribute set vsys <name> profiles vulnerability <name> threat-exception <name> time-attribute interval <1-3600> set vsys <name> profiles vulnerability <name> threat-exception <name> time-attribute threshold <1-65535> set vsys <name> profiles vulnerability <name> threat-exception <name> time-attribute track-by <source|destination|source-and-destination> set vsys <name> profiles vulnerability <name> threat-exception <name> exempt-ip set vsys <name> profiles vulnerability <name> threat-exception <name> exempt-ip <name> set vsys <name> profiles url-filtering set vsys <name> profiles url-filtering <name> set vsys <name> profiles url-filtering <name> description <value> set vsys <name> profiles url-filtering <name> allow [ <allow1> <allow2>... ] set vsys <name> profiles url-filtering <name> alert [ <alert1> <alert2>... ] set vsys <name> profiles url-filtering <name> block [ <block1> <block2>... ] set vsys <name> profiles url-filtering <name> continue [ <continue1> <continue2>... ] set vsys <name> profiles url-filtering <name> override [ <override1> <override2>... ] set vsys <name> profiles url-filtering <name> credential-enforcement set vsys <name> profiles url-filtering <name> credential-enforcement mode set vsys <name> profiles url-filtering <name> credential-enforcement mode disabled set vsys <name> profiles url-filtering <name> credential-enforcement mode ip-user set vsys <name> profiles url-filtering <name> credential-enforcement mode domain-credentials set vsys <name> profiles url-filtering <name> credential-enforcement mode group-mapping <value> set vsys <name> profiles url-filtering <name> credential-enforcement log-severity <value> set vsys <name> profiles url-filtering <name> credential-enforcement allow [ <allow1> <allow2>... ] set vsys <name> profiles url-filtering <name> credential-enforcement alert [ <alert1> <alert2>... ] set vsys <name> profiles url-filtering <name> credential-enforcement block [ <block1> <block2>... ] set vsys <name> profiles url-filtering <name> credential-enforcement continue [ <continue1> <continue2>... ] set vsys <name> profiles url-filtering <name> enable-container-page <yes|no> set vsys <name> profiles url-filtering <name> log-container-page-only <yes|no> set vsys <name> profiles url-filtering <name> safe-search-enforcement <yes|no> set vsys <name> profiles url-filtering <name> log-http-hdr-xff <yes|no> set vsys <name> profiles url-filtering <name> log-http-hdr-user-agent <yes|no> set vsys <name> profiles url-filtering <name> log-http-hdr-referer <yes|no> set vsys <name> profiles url-filtering <name> http-header-insertion set vsys <name> profiles url-filtering <name> http-header-insertion <name> set vsys <name> profiles url-filtering <name> http-header-insertion <name> type set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> headers set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> header <value> set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> value <value> set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> headers <name> log <yes|no> set vsys <name> profiles url-filtering <name> http-header-insertion <name> type <name> domains [ <domains1> <domains2>... ] set vsys <name> profiles url-filtering <name> mlav-category-exception [ <mlav-category-exception1> <mlav-category-exception2>... ] set vsys <name> profiles url-filtering <name> mlav-engine-urlbased-enabled set vsys <name> profiles url-filtering <name> mlav-engine-urlbased-enabled <name> set vsys <name> profiles url-filtering <name> mlav-engine-urlbased-enabled <name> mlav-policy-action <block|alert|allow> set vsys <name> profiles file-blocking set vsys <name> profiles file-blocking <name> set vsys <name> profiles file-blocking <name> description <value> set vsys <name> profiles file-blocking <name> rules set vsys <name> profiles file-blocking <name> rules <name> set vsys <name> profiles file-blocking <name> rules <name> application [ <application1> <application2>... ] set vsys <name> profiles file-blocking <name> rules <name> file-type [ <file-type1> <file-type2>... ] set vsys <name> profiles file-blocking <name> rules <name> direction <upload|download|both> set vsys <name> profiles file-blocking <name> rules <name> action <alert|block|continue> set vsys <name> profiles wildfire-analysis set vsys <name> profiles wildfire-analysis <name> set vsys <name> profiles wildfire-analysis <name> description <value> set vsys <name> profiles wildfire-analysis <name> rules set vsys <name> profiles wildfire-analysis <name> rules <name> set vsys <name> profiles wildfire-analysis <name> rules <name> application [ <application1> <application2>... ] set vsys <name> profiles wildfire-analysis <name> rules <name> file-type [ <file-type1> <file-type2>... ] set vsys <name> profiles wildfire-analysis <name> rules <name> direction <upload|download|both> set vsys <name> profiles wildfire-analysis <name> rules <name> analysis <public-cloud|private-cloud> set vsys <name> profiles custom-url-category set vsys <name> profiles custom-url-category <name> set vsys <name> profiles custom-url-category <name> description <value> set vsys <name> profiles custom-url-category <name> list [ <list1> <list2>... ] set vsys <name> profiles custom-url-category <name> type <value> set vsys <name> profiles data-objects set vsys <name> profiles data-objects <name> set vsys <name> profiles data-objects <name> description <value> set vsys <name> profiles data-objects <name> pattern-type set vsys <name> profiles data-objects <name> pattern-type predefined set vsys <name> profiles data-objects <name> pattern-type predefined pattern set vsys <name> profiles data-objects <name> pattern-type predefined pattern <name> set vsys <name> profiles data-objects <name> pattern-type predefined pattern <name> file-type [ <file-type1> <file-type2>... ] set vsys <name> profiles data-objects <name> pattern-type regex set vsys <name> profiles data-objects <name> pattern-type regex pattern set vsys <name> profiles data-objects <name> pattern-type regex pattern <name> set vsys <name> profiles data-objects <name> pattern-type regex pattern <name> file-type [ <file-type1> <file-type2>... ] set vsys <name> profiles data-objects <name> pattern-type regex pattern <name> regex <value> set vsys <name> profiles data-objects <name> pattern-type file-properties set vsys <name> profiles data-objects <name> pattern-type file-properties pattern set vsys <name> profiles data-objects <name> pattern-type file-properties pattern <name> set vsys <name> profiles data-objects <name> pattern-type file-properties pattern <name> file-type <value> set vsys <name> profiles data-objects <name> pattern-type file-properties pattern <name> file-property <value> set vsys <name> profiles data-objects <name> pattern-type file-properties pattern <name> property-value <value> set vsys <name> profiles data-filtering set vsys <name> profiles data-filtering <name> set vsys <name> profiles data-filtering <name> description <value> set vsys <name> profiles data-filtering <name> data-capture <yes|no> set vsys <name> profiles data-filtering <name> rules set vsys <name> profiles data-filtering <name> rules <name> set vsys <name> profiles data-filtering <name> rules <name> data-object <value> set vsys <name> profiles data-filtering <name> rules <name> application [ <application1> <application2>... ] set vsys <name> profiles data-filtering <name> rules <name> file-type [ <file-type1> <file-type2>... ] set vsys <name> profiles data-filtering <name> rules <name> direction <upload|download|both> set vsys <name> profiles data-filtering <name> rules <name> alert-threshold <0-65535> set vsys <name> profiles data-filtering <name> rules <name> block-threshold <0-65535> set vsys <name> profiles data-filtering <name> rules <name> log-severity <value> set vsys <name> profiles hip-profiles set vsys <name> profiles hip-profiles <name> set vsys <name> profiles hip-profiles <name> description <value> set vsys <name> profiles hip-profiles <name> match <value> set vsys <name> profiles dos-protection set vsys <name> profiles dos-protection <name> set vsys <name> profiles dos-protection <name> type <aggregate|classified> set vsys <name> profiles dos-protection <name> description <value> set vsys <name> profiles dos-protection <name> flood set vsys <name> profiles dos-protection <name> flood tcp-syn set vsys <name> profiles dos-protection <name> flood tcp-syn enable <yes|no> set vsys <name> profiles dos-protection <name> flood tcp-syn red set vsys <name> profiles dos-protection <name> flood tcp-syn red alarm-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood tcp-syn red activate-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood tcp-syn red maximal-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood tcp-syn red block set vsys <name> profiles dos-protection <name> flood tcp-syn red block duration <1-21600> set vsys <name> profiles dos-protection <name> flood tcp-syn syn-cookies set vsys <name> profiles dos-protection <name> flood tcp-syn syn-cookies alarm-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood tcp-syn syn-cookies activate-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood tcp-syn syn-cookies maximal-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood tcp-syn syn-cookies block set vsys <name> profiles dos-protection <name> flood tcp-syn syn-cookies block duration <1-21600> set vsys <name> profiles dos-protection <name> flood udp set vsys <name> profiles dos-protection <name> flood udp enable <yes|no> set vsys <name> profiles dos-protection <name> flood udp red set vsys <name> profiles dos-protection <name> flood udp red alarm-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood udp red activate-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood udp red maximal-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood udp red block set vsys <name> profiles dos-protection <name> flood udp red block duration <1-21600> set vsys <name> profiles dos-protection <name> flood icmp set vsys <name> profiles dos-protection <name> flood icmp enable <yes|no> set vsys <name> profiles dos-protection <name> flood icmp red set vsys <name> profiles dos-protection <name> flood icmp red alarm-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood icmp red activate-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood icmp red maximal-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood icmp red block set vsys <name> profiles dos-protection <name> flood icmp red block duration <1-21600> set vsys <name> profiles dos-protection <name> flood icmpv6 set vsys <name> profiles dos-protection <name> flood icmpv6 enable <yes|no> set vsys <name> profiles dos-protection <name> flood icmpv6 red set vsys <name> profiles dos-protection <name> flood icmpv6 red alarm-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood icmpv6 red activate-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood icmpv6 red maximal-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood icmpv6 red block set vsys <name> profiles dos-protection <name> flood icmpv6 red block duration <1-21600> set vsys <name> profiles dos-protection <name> flood other-ip set vsys <name> profiles dos-protection <name> flood other-ip enable <yes|no> set vsys <name> profiles dos-protection <name> flood other-ip red set vsys <name> profiles dos-protection <name> flood other-ip red alarm-rate <0-2000000> set vsys <name> profiles dos-protection <name> flood other-ip red activate-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood other-ip red maximal-rate <1-2000000> set vsys <name> profiles dos-protection <name> flood other-ip red block set vsys <name> profiles dos-protection <name> flood other-ip red block duration <1-21600> set vsys <name> profiles dos-protection <name> resource set vsys <name> profiles dos-protection <name> resource sessions set vsys <name> profiles dos-protection <name> resource sessions enabled <yes|no> set vsys <name> profiles dos-protection <name> resource sessions max-concurrent-limit <1-4194304> set vsys <name> profiles sdwan-path-quality set vsys <name> profiles sdwan-path-quality <name> set vsys <name> profiles sdwan-path-quality <name> metric set vsys <name> profiles sdwan-path-quality <name> metric latency set vsys <name> profiles sdwan-path-quality <name> metric latency threshold <10-3000> set vsys <name> profiles sdwan-path-quality <name> metric latency sensitivity <low|medium|high> set vsys <name> profiles sdwan-path-quality <name> metric pkt-loss set vsys <name> profiles sdwan-path-quality <name> metric pkt-loss threshold <1-100> set vsys <name> profiles sdwan-path-quality <name> metric pkt-loss sensitivity <low|medium|high> set vsys <name> profiles sdwan-path-quality <name> metric jitter set vsys <name> profiles sdwan-path-quality <name> metric jitter threshold <10-2000> set vsys <name> profiles sdwan-path-quality <name> metric jitter sensitivity <low|medium|high> set vsys <name> profiles sdwan-traffic-distribution set vsys <name> profiles sdwan-traffic-distribution <name> set vsys <name> profiles sdwan-traffic-distribution <name> traffic-distribution <Best Available Path|Top Down Priority|Weighted Session Distribution> set vsys <name> profiles sdwan-traffic-distribution <name> link-tags set vsys <name> profiles sdwan-traffic-distribution <name> link-tags <name> set vsys <name> profiles sdwan-traffic-distribution <name> link-tags <name> weight <0-100> set vsys <name> profiles sdwan-saas-quality set vsys <name> profiles sdwan-saas-quality <name> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode set vsys <name> profiles sdwan-saas-quality <name> monitor-mode adaptive set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address <name> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address <name> probe-interval <1-60> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn fqdn-name <value> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn probe-interval <1-60> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode http-https set vsys <name> profiles sdwan-saas-quality <name> monitor-mode http-https monitored-url <value> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode http-https probe-interval <3-60> set vsys <name> profiles sdwan-error-correction set vsys <name> profiles sdwan-error-correction <name> set vsys <name> profiles sdwan-error-correction <name> activation-threshold <1-99> set vsys <name> profiles sdwan-error-correction <name> mode set vsys <name> profiles sdwan-error-correction <name> mode forward-error-correction set vsys <name> profiles sdwan-error-correction <name> mode forward-error-correction ratio <10% (20:2)|20% (20:4)|30% (20:6)|40% (20:8)|50% (20:10)> set vsys <name> profiles sdwan-error-correction <name> mode forward-error-correction recovery-duration <1-5000> set vsys <name> profiles sdwan-error-correction <name> mode packet-duplication set vsys <name> profiles sdwan-error-correction <name> mode packet-duplication recovery-duration-pd <1-5000> set vsys <name> profiles decryption set vsys <name> profiles decryption <name> set vsys <name> profiles decryption <name> interface <value> set vsys <name> profiles decryption <name> forwarded-only <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy set vsys <name> profiles decryption <name> ssl-forward-proxy block-expired-certificate <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-untrusted-issuer <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-tls13-downgrade-no-resource <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy restrict-cert-exts <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-unsupported-version <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-unsupported-cipher <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-client-cert <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-if-no-resource <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-if-hsm-unavailable <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-unknown-cert <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy block-timeout-cert <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy auto-include-altname <yes|no> set vsys <name> profiles decryption <name> ssl-forward-proxy strip-alpn <yes|no> set vsys <name> profiles decryption <name> ssl-inbound-proxy set vsys <name> profiles decryption <name> ssl-inbound-proxy block-unsupported-version <yes|no> set vsys <name> profiles decryption <name> ssl-inbound-proxy block-unsupported-cipher <yes|no> set vsys <name> profiles decryption <name> ssl-inbound-proxy block-if-no-resource <yes|no> set vsys <name> profiles decryption <name> ssl-inbound-proxy block-tls13-downgrade-no-resource <yes|no> set vsys <name> profiles decryption <name> ssl-inbound-proxy block-if-hsm-unavailable <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings set vsys <name> profiles decryption <name> ssl-protocol-settings min-version <sslv3|tls1-0|tls1-1|tls1-2|tls1-3> set vsys <name> profiles decryption <name> ssl-protocol-settings max-version <sslv3|tls1-0|tls1-1|tls1-2|tls1-3|max> set vsys <name> profiles decryption <name> ssl-protocol-settings keyxchg-algo-rsa <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings keyxchg-algo-dhe <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings keyxchg-algo-ecdhe <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-3des <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-rc4 <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-aes-128-cbc <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-aes-256-cbc <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-aes-128-gcm <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-aes-256-gcm <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings enc-algo-chacha20-poly1305 <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings auth-algo-md5 <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings auth-algo-sha1 <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings auth-algo-sha256 <yes|no> set vsys <name> profiles decryption <name> ssl-protocol-settings auth-algo-sha384 <yes|no> set vsys <name> profiles decryption <name> ssl-no-proxy set vsys <name> profiles decryption <name> ssl-no-proxy block-expired-certificate <yes|no> set vsys <name> profiles decryption <name> ssl-no-proxy block-untrusted-issuer <yes|no> set vsys <name> profiles decryption <name> ssh-proxy set vsys <name> profiles decryption <name> ssh-proxy block-unsupported-version <yes|no> set vsys <name> profiles decryption <name> ssh-proxy block-unsupported-alg <yes|no> set vsys <name> profiles decryption <name> ssh-proxy block-ssh-errors <yes|no> set vsys <name> profiles decryption <name> ssh-proxy block-if-no-resource <yes|no> set vsys <name> profiles packet-broker set vsys <name> profiles packet-broker <name> set vsys <name> profiles packet-broker <name> description <value> set vsys <name> profiles packet-broker <name> interface-primary <value> set vsys <name> profiles packet-broker <name> interface-secondary <value> set vsys <name> profiles packet-broker <name> flow <unidirectional|bidirectional> set vsys <name> profiles packet-broker <name> transparent set vsys <name> profiles packet-broker <name> transparent enable-ipv6 <yes|no> set vsys <name> profiles packet-broker <name> routed set vsys <name> profiles packet-broker <name> routed security-chain set vsys <name> profiles packet-broker <name> routed security-chain <name> set vsys <name> profiles packet-broker <name> routed security-chain <name> enable <yes|no> set vsys <name> profiles packet-broker <name> routed security-chain <name> first-device <ip/netmask> set vsys <name> profiles packet-broker <name> routed security-chain <name> first-device-description <value> set vsys <name> profiles packet-broker <name> routed security-chain <name> last-device <ip/netmask> set vsys <name> profiles packet-broker <name> routed security-chain <name> last-device-description <value> set vsys <name> profiles packet-broker <name> routed distribution <round-robin|ip-modulo|ip-hash|lowest-latency> set vsys <name> profiles packet-broker <name> health-check set vsys <name> profiles packet-broker <name> health-check failure-action <bypass|block> set vsys <name> profiles packet-broker <name> health-check failure-condition <any|all> set vsys <name> profiles packet-broker <name> health-check path-enable <yes|no> set vsys <name> profiles packet-broker <name> health-check path-count <1-10> set vsys <name> profiles packet-broker <name> health-check path-interval-s <1-60> set vsys <name> profiles packet-broker <name> health-check path-recovery-hold-s <0-65535> set vsys <name> profiles packet-broker <name> health-check http-enable <yes|no> set vsys <name> profiles packet-broker <name> health-check http-count <1-10> set vsys <name> profiles packet-broker <name> health-check http-interval-s <1-60> set vsys <name> profiles packet-broker <name> health-check http-latency-enable <yes|no> set vsys <name> profiles packet-broker <name> health-check http-latency-maximum-ms <10-65535> set vsys <name> profiles packet-broker <name> health-check http-latency-duration-s <1-65535> set vsys <name> profiles packet-broker <name> health-check http-latency-log-exceeded <yes|no> set vsys <name> profile-group set vsys <name> profile-group <name> set vsys <name> profile-group <name> virus [ <virus1> <virus2>... ] set vsys <name> profile-group <name> spyware [ <spyware1> <spyware2>... ] set vsys <name> profile-group <name> vulnerability [ <vulnerability1> <vulnerability2>... ] set vsys <name> profile-group <name> url-filtering [ <url-filtering1> <url-filtering2>... ] set vsys <name> profile-group <name> file-blocking [ <file-blocking1> <file-blocking2>... ] set vsys <name> profile-group <name> wildfire-analysis [ <wildfire-analysis1> <wildfire-analysis2>... ] set vsys <name> profile-group <name> data-filtering [ <data-filtering1> <data-filtering2>... ] set vsys <name> service set vsys <name> service <name> set vsys <name> service <name> description <value> set vsys <name> service <name> protocol set vsys <name> service <name> protocol tcp set vsys <name> service <name> protocol tcp port <0-65535,...> set vsys <name> service <name> protocol tcp source-port <0-65535,...> set vsys <name> service <name> protocol tcp override set vsys <name> service <name> protocol tcp override no set vsys <name> service <name> protocol tcp override yes set vsys <name> service <name> protocol tcp override yes timeout <1-604800> set vsys <name> service <name> protocol tcp override yes halfclose-timeout <1-604800> set vsys <name> service <name> protocol tcp override yes timewait-timeout <1-600> set vsys <name> service <name> protocol udp set vsys <name> service <name> protocol udp port <0-65535,...> set vsys <name> service <name> protocol udp source-port <0-65535,...> set vsys <name> service <name> protocol udp override set vsys <name> service <name> protocol udp override no set vsys <name> service <name> protocol udp override yes set vsys <name> service <name> protocol udp override yes timeout <1-604800> set vsys <name> service <name> tag [ <tag1> <tag2>... ] set vsys <name> service-group set vsys <name> service-group <name> set vsys <name> service-group <name> members [ <members1> <members2>... ] set vsys <name> service-group <name> tag [ <tag1> <tag2>... ] set vsys <name> reports set vsys <name> reports <name> set vsys <name> reports <name> description <value> set vsys <name> reports <name> disabled <yes|no> set vsys <name> reports <name> query <value> set vsys <name> reports <name> caption <value> set vsys <name> reports <name> frequency <daily> set vsys <name> reports <name> start-time <value> set vsys <name> reports <name> end-time <value> set vsys <name> reports <name> period <last-15-minutes|last-hour|last-6-hrs|last-12-hrs|last-24-hrs|last-calendar-day|last-7-days|last-7-calendar-days|last-calendar-week|last-30-days|last-30-calendar-days|last-60-days|last-60-calendar-days|last-90-days|last-90-calendar-days|last-calendar-month> set vsys <name> reports <name> topn <1-10000> set vsys <name> reports <name> topm <1-50> set vsys <name> reports <name> type set vsys <name> reports <name> type appstat set vsys <name> reports <name> type appstat aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type appstat group-by <serial|vsys_name|device_name|vsys|name|risk|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-name|category-of-name|risk-of-name|container-of-name|technology-of-name> set vsys <name> reports <name> type appstat values [ <values1> <values2>... ] set vsys <name> reports <name> type appstat labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type appstat sortby <nbytes|nsess|npkts|nthreats> set vsys <name> reports <name> type decryption set vsys <name> reports <name> type decryption aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type decryption group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|vsys_name|device_name|tls_version|tls_keyxchg|tls_enc|tls_auth|ec_curve|err_index|root_status|proxy_type|policy_name|cn|issuer_cn|root_cn|sni|error|src_dag|dst_dag|src_edl|dst_edl|container_id|pod_namespace|pod_name|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time> set vsys <name> reports <name> type decryption values [ <values1> <values2>... ] set vsys <name> reports <name> type decryption labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type decryption sortby <repeatcnt|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type desum set vsys <name> reports <name> type desum aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type desum group-by <serial|time_generated|vsys_name|device_name|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|app|src|dst|srcuser|dstuser|vsys|tls_version|tls_keyxchg|tls_enc|tls_auth|sni|error|err_index|src_edl|dst_edl|container_id|pod_namespace|pod_name|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time> set vsys <name> reports <name> type desum values [ <values1> <values2>... ] set vsys <name> reports <name> type desum labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type desum sortby <repeatcnt|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type threat set vsys <name> reports <name> type threat aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type threat group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|vsys_name|device_name|parent_session_id|parent_start_time|threatid|category|severity|direction|http_method|nssai_sst|filedigest|filetype|http2_connection|xff_ip|threat_name|src_edl|dst_edl|dynusergroup_name|hostid|partial_hash|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|misc|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|pbf-s2c|pbf-c2s|flag-nat|flag-pcap|subtype|transaction|captive-portal|flag-proxy|non-std-dport|tunnelid|monitortag|users|category-of-threatid|threat-type> set vsys <name> reports <name> type threat values [ <values1> <values2>... ] set vsys <name> reports <name> type threat labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type threat sortby <repeatcnt|nunique-of-users|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type url set vsys <name> reports <name> type url aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type url group-by <action|app|category|category-of-app|direction|dport|dst|dstuser|from|inbound_if|misc|http_headers|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|severity|sport|src|srcuser|subcategory-of-app|technology-of-app|container-of-app|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|contenttype|user_agent|device_name|vsys_name|url|tunnelid|monitortag|parent_session_id|parent_start_time|http2_connection|tunnel|http_method|url_category_list|xff_ip|container_id|pod_namespace|pod_name|src_dag|dst_dag|src_edl|dst_edl|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac> set vsys <name> reports <name> type url values [ <values1> <values2>... ] set vsys <name> reports <name> type url labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type url sortby <repeatcnt|nunique-of-users> set vsys <name> reports <name> type wildfire set vsys <name> reports <name> type wildfire aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type wildfire group-by <app|category|category-of-app|dport|dst|dstuser|from|inbound_if|misc|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|sport|src|srcuser|subcategory-of-app|technology-of-app|container-of-app|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|vsys_name|device_name|filetype|filename|filedigest|tunnelid|monitortag|parent_session_id|parent_start_time|http2_connection|tunnel|xff_ip|src_dag|dst_dag|src_edl|dst_edl> set vsys <name> reports <name> type wildfire values [ <values1> <values2>... ] set vsys <name> reports <name> type wildfire labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type wildfire sortby <repeatcnt|nunique-of-users> set vsys <name> reports <name> type data set vsys <name> reports <name> type data aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type data group-by <action|app|category-of-app|direction|dport|dst|dstuser|from|inbound_if|misc|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|severity|sport|src|srcuser|subcategory-of-app|subtype|technology-of-app|container-of-app|threatid|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|vsys_name|device_name|data-type|filename|tunnelid|monitortag|parent_session_id|parent_start_time|http2_connection|tunnel|xff_ip|src_dag|dst_dag|src_edl|dst_edl|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac> set vsys <name> reports <name> type data values [ <values1> <values2>... ] set vsys <name> reports <name> type data labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type data sortby <repeatcnt|nunique-of-users> set vsys <name> reports <name> type thsum set vsys <name> reports <name> type thsum aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type thsum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|rule|threatid|srcuser|dstuser|srcloc|dstloc|xff_ip|vsys|from|to|dev_serial|dport|action|severity|inbound_if|outbound_if|category|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|parent_session_id|parent_start_time|tunnel|direction|assoc_id|ppid|http2_connection|rule_uuid|threat_name|src_edl|dst_edl|hostid|dynusergroup_name|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subtype|tunnelid|monitortag|category-of-threatid|threat-type> set vsys <name> reports <name> type thsum values [ <values1> <values2>... ] set vsys <name> reports <name> type thsum labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type thsum sortby <sessions|count|nunique-of-apps|nunique-of-users|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type traffic set vsys <name> reports <name> type traffic aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type traffic group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|vsys_name|device_name|parent_session_id|parent_start_time|category|session_end_reason|action_source|nssai_sst|nssai_sd|http2_connection|xff_ip|dynusergroup_name|src_edl|dst_edl|hostid|session_owner|policy_id|offloaded|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|pbf-s2c|pbf-c2s|decrypt-mirror|threat-type|flag-nat|flag-pcap|captive-portal|flag-proxy|non-std-dport|transaction|sym-return|sessionid|flag-decrypt-fwd|tunnelid|monitortag> set vsys <name> reports <name> type traffic values [ <values1> <values2>... ] set vsys <name> reports <name> type traffic labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type traffic sortby <repeatcnt|bytes|bytes_sent|bytes_received|packets|pkts_sent|pkts_received|chunks|chunks_sent|chunks_received|nunique-of-users|elapsed|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type urlsum set vsys <name> reports <name> type urlsum aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type urlsum group-by <serial|time_generated|vsys_name|device_name|app|category|src|dst|rule|srcuser|dstuser|srcloc|dstloc|vsys|from|to|dev_serial|inbound_if|outbound_if|dport|action|tunnel|url_domain|user_agent|http_method|http2_connection|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|parent_session_id|parent_start_time|rule_uuid|xff_ip|src_edl|dst_edl|hostid|dynusergroup_name|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|url_category_list|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|tunnelid|monitortag> set vsys <name> reports <name> type urlsum values [ <values1> <values2>... ] set vsys <name> reports <name> type urlsum labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type urlsum sortby <repeatcnt|nunique-of-users|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type trsum set vsys <name> reports <name> type trsum aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type trsum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|xff_ip|rule|srcuser|dstuser|srcloc|dstloc|category|vsys|from|to|dev_serial|dport|action|tunnel|inbound_if|outbound_if|category-of-app|subcategory-of-app|technology-of-app|container-of-app|risk-of-app|parent_session_id|parent_start_time|assoc_id|http2_connection|rule_uuid|src_edl|dst_edl|dynusergroup_name|s_decrypted|s_encrypted|hostid|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|tunnelid|monitortag|standard-ports-of-app> set vsys <name> reports <name> type trsum values [ <values1> <values2>... ] set vsys <name> reports <name> type trsum labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type trsum sortby <bytes|sessions|bytes_sent|bytes_received|nthreats|nftrans|ndpmatches|nurlcount|chunks|chunks_sent|chunks_received|ncontent|nunique-of-apps|nunique-of-users|nunique-of-src_profile|nunique-of-dst_profile> set vsys <name> reports <name> type tunnel set vsys <name> reports <name> type tunnel aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type tunnel group-by <action|app|category-of-app|dport|dst|dstuser|from|inbound_if|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|sessionid|sport|src|srcuser|subcategory-of-app|technology-of-app|container-of-app|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|vsys_name|device_name|tunnelid|monitortag|parent_session_id|parent_start_time|session_end_reason|action_source|tunnel|tunnel_insp_rule|src_dag|dst_dag|src_edl|dst_edl> set vsys <name> reports <name> type tunnel values [ <values1> <values2>... ] set vsys <name> reports <name> type tunnel labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type tunnel sortby <repeatcnt|bytes|bytes_sent|bytes_received|packets|pkts_sent|pkts_received|max_encap|unknown_proto|strict_check|tunnel_fragment|sessions_created|sessions_closed|nunique-of-users> set vsys <name> reports <name> type tunnelsum set vsys <name> reports <name> type tunnelsum aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type tunnelsum group-by <action|app|category-of-app|dst|risk-of-app|rule|rule_uuid|src|subcategory-of-app|technology-of-app|container-of-app|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|serial|vsys_name|device_name|tunnelid|monitortag|parent_session_id|parent_start_time|tunnel|tunnel_insp_rule|src_dag|dst_dag|src_edl|dst_edl> set vsys <name> reports <name> type tunnelsum values [ <values1> <values2>... ] set vsys <name> reports <name> type tunnelsum labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type tunnelsum sortby <repeatcnt|bytes|bytes_sent|bytes_received> set vsys <name> reports <name> type userid set vsys <name> reports <name> type userid aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type userid group-by <serial|time_generated|vsys_name|device_name|vsys|ip|user|datasourcename|beginport|endport|datasource|datasourcetype|factortype|factorcompletiontime|factorno|tag_name|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subtype> set vsys <name> reports <name> type userid values [ <values1> <values2>... ] set vsys <name> reports <name> type userid labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type userid sortby <repeatcnt|factortype|factorcompletiontime> set vsys <name> reports <name> type auth set vsys <name> reports <name> type auth aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type auth group-by <serial|time_generated|vsys_name|device_name|vsys|ip|user|normalize_user|object|authpolicy|authid|vendor|clienttype|event|factorno|authproto|rule_uuid|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|serverprofile|desc> set vsys <name> reports <name> type auth values [ <values1> <values2>... ] set vsys <name> reports <name> type auth labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type auth sortby <repeatcnt|time_generated|vendor> set vsys <name> reports <name> type iptag set vsys <name> reports <name> type iptag aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type iptag group-by <serial|time_generated|vsys_name|device_name|vsys|ip|tag_name|event_id|datasourcename|datasource_type|datasource_subtype|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time> set vsys <name> reports <name> type iptag values [ <values1> <values2>... ] set vsys <name> reports <name> type iptag labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type iptag sortby <repeatcnt|time_generated> set vsys <name> reports <name> type hipmatch set vsys <name> reports <name> type hipmatch aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set vsys <name> reports <name> type hipmatch group-by <serial|time_generated|vsys_name|device_name|srcuser|vsys|machinename|src|matchname|os|matchtype|srcipv6|hostid|mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time> set vsys <name> reports <name> type hipmatch values [ <values1> <values2>... ] set vsys <name> reports <name> type hipmatch labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type hipmatch sortby <repeatcnt> set vsys <name> reports <name> type hipmatch last-match-by <> set vsys <name> report-group set vsys <name> report-group <name> set vsys <name> report-group <name> title-page <yes|no> set vsys <name> report-group <name> predefined <user-activity-report|saas-application-usage-report> set vsys <name> report-group <name> custom-widget set vsys <name> report-group <name> custom-widget <name> set vsys <name> report-group <name> custom-widget <name> custom-report <value> set vsys <name> report-group <name> custom-widget <name> pdf-summary-report <value> set vsys <name> report-group <name> custom-widget <name> log-view <value> set vsys <name> report-group <name> custom-widget <name> csv <value> set vsys <name> report-group <name> all set vsys <name> report-group <name> all entry set vsys <name> report-group <name> all entry include-user-groups-info <yes|no> set vsys <name> report-group <name> all entry user-groups [ <user-groups1> <user-groups2>... ] set vsys <name> report-group <name> selected-zone set vsys <name> report-group <name> selected-zone entry set vsys <name> report-group <name> selected-zone entry include-user-groups-info <yes|no> set vsys <name> report-group <name> selected-zone entry user-groups [ <user-groups1> <user-groups2>... ] set vsys <name> report-group <name> selected-zone entry zone <value> set vsys <name> report-group <name> selected-user-group set vsys <name> report-group <name> selected-user-group entry set vsys <name> report-group <name> selected-user-group entry user-group <value> set vsys <name> report-group <name> variable set vsys <name> report-group <name> variable <name> set vsys <name> report-group <name> variable <name> value <value> set vsys <name> pdf-summary-report set vsys <name> pdf-summary-report <name> set vsys <name> pdf-summary-report <name> header set vsys <name> pdf-summary-report <name> header caption <value> set vsys <name> pdf-summary-report <name> footer set vsys <name> pdf-summary-report <name> footer note <value> set vsys <name> pdf-summary-report <name> custom-widget set vsys <name> pdf-summary-report <name> custom-widget <name> set vsys <name> pdf-summary-report <name> custom-widget <name> chart-type <pie|line|bar|table> set vsys <name> pdf-summary-report <name> custom-widget <name> row <1-6> set vsys <name> pdf-summary-report <name> custom-widget <name> column <1-3> set vsys <name> email-scheduler set vsys <name> email-scheduler <name> set vsys <name> email-scheduler <name> report-group <value> set vsys <name> email-scheduler <name> email-profile <value> set vsys <name> email-scheduler <name> recipient-emails <value> set vsys <name> email-scheduler <name> recurring set vsys <name> email-scheduler <name> recurring disabled set vsys <name> email-scheduler <name> recurring daily set vsys <name> email-scheduler <name> recurring weekly <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set vsys <name> email-scheduler <name> recurring monthly <1-31> set vsys <name> external-list set vsys <name> external-list <name> set vsys <name> external-list <name> type set vsys <name> external-list <name> type predefined-ip set vsys <name> external-list <name> type predefined-ip exception-list [ <exception-list1> <exception-list2>... ] set vsys <name> external-list <name> type predefined-ip description <value> set vsys <name> external-list <name> type predefined-ip url <value> set vsys <name> external-list <name> type predefined-url set vsys <name> external-list <name> type predefined-url exception-list [ <exception-list1> <exception-list2>... ] set vsys <name> external-list <name> type predefined-url description <value> set vsys <name> external-list <name> type predefined-url url <value> set vsys <name> external-list <name> type ip set vsys <name> external-list <name> type ip exception-list [ <exception-list1> <exception-list2>... ] set vsys <name> external-list <name> type ip description <value> set vsys <name> external-list <name> type ip url <value> set vsys <name> external-list <name> type ip certificate-profile <value>|<None> set vsys <name> external-list <name> type ip auth set vsys <name> external-list <name> type ip auth username <value> set vsys <name> external-list <name> type ip auth password <value> set vsys <name> external-list <name> type ip recurring set vsys <name> external-list <name> type ip recurring five-minute set vsys <name> external-list <name> type ip recurring hourly set vsys <name> external-list <name> type ip recurring daily set vsys <name> external-list <name> type ip recurring daily at <value> set vsys <name> external-list <name> type ip recurring weekly set vsys <name> external-list <name> type ip recurring weekly day-of-week <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set vsys <name> external-list <name> type ip recurring weekly at <value> set vsys <name> external-list <name> type ip recurring monthly set vsys <name> external-list <name> type ip recurring monthly day-of-month <1-31> set vsys <name> external-list <name> type ip recurring monthly at <value> set vsys <name> external-list <name> type domain set vsys <name> external-list <name> type domain exception-list [ <exception-list1> <exception-list2>... ] set vsys <name> external-list <name> type domain description <value> set vsys <name> external-list <name> type domain url <value> set vsys <name> external-list <name> type domain certificate-profile <value>|<None> set vsys <name> external-list <name> type domain auth set vsys <name> external-list <name> type domain auth username <value> set vsys <name> external-list <name> type domain auth password <value> set vsys <name> external-list <name> type domain recurring set vsys <name> external-list <name> type domain recurring hourly set vsys <name> external-list <name> type domain recurring five-minute set vsys <name> external-list <name> type domain recurring daily set vsys <name> external-list <name> type domain recurring daily at <value> set vsys <name> external-list <name> type domain recurring weekly set vsys <name> external-list <name> type domain recurring weekly day-of-week <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set vsys <name> external-list <name> type domain recurring weekly at <value> set vsys <name> external-list <name> type domain recurring monthly set vsys <name> external-list <name> type domain recurring monthly day-of-month <1-31> set vsys <name> external-list <name> type domain recurring monthly at <value> set vsys <name> external-list <name> type domain expand-domain <yes|no> set vsys <name> external-list <name> type url set vsys <name> external-list <name> type url exception-list [ <exception-list1> <exception-list2>... ] set vsys <name> external-list <name> type url description <value> set vsys <name> external-list <name> type url url <value> set vsys <name> external-list <name> type url certificate-profile <value>|<None> set vsys <name> external-list <name> type url auth set vsys <name> external-list <name> type url auth username <value> set vsys <name> external-list <name> type url auth password <value> set vsys <name> external-list <name> type url recurring set vsys <name> external-list <name> type url recurring hourly set vsys <name> external-list <name> type url recurring five-minute set vsys <name> external-list <name> type url recurring daily set vsys <name> external-list <name> type url recurring daily at <value> set vsys <name> external-list <name> type url recurring weekly set vsys <name> external-list <name> type url recurring weekly day-of-week <sunday|monday|tuesday|wednesday|thursday|friday|saturday> set vsys <name> external-list <name> type url recurring weekly at <value> set vsys <name> external-list <name> type url recurring monthly set vsys <name> external-list <name> type url recurring monthly day-of-month <1-31> set vsys <name> external-list <name> type url recurring monthly at <value> set vsys <name> address set vsys <name> address <name> set vsys <name> address <name> description <value> set vsys <name> address <name> ip-netmask <ip/netmask> set vsys <name> address <name> ip-range <ip-range> set vsys <name> address <name> ip-wildcard <ipdiscontmask> set vsys <name> address <name> fqdn <value> set vsys <name> address <name> tag [ <tag1> <tag2>... ] set vsys <name> address-group set vsys <name> address-group <name> set vsys <name> address-group <name> description <value> set vsys <name> address-group <name> static [ <static1> <static2>... ] set vsys <name> address-group <name> dynamic set vsys <name> address-group <name> dynamic filter <value> set vsys <name> address-group <name> tag [ <tag1> <tag2>... ] set vsys <name> dynamic-user-group set vsys <name> dynamic-user-group <name> set vsys <name> dynamic-user-group <name> description <value> set vsys <name> dynamic-user-group <name> filter <value> set vsys <name> dynamic-user-group <name> tag [ <tag1> <tag2>... ] set vsys <name> schedule set vsys <name> schedule <name> set vsys <name> schedule <name> schedule-type set vsys <name> schedule <name> schedule-type recurring set vsys <name> schedule <name> schedule-type recurring weekly set vsys <name> schedule <name> schedule-type recurring weekly sunday [ <sunday1> <sunday2>... ] set vsys <name> schedule <name> schedule-type recurring weekly monday [ <monday1> <monday2>... ] set vsys <name> schedule <name> schedule-type recurring weekly tuesday [ <tuesday1> <tuesday2>... ] set vsys <name> schedule <name> schedule-type recurring weekly wednesday [ <wednesday1> <wednesday2>... ] set vsys <name> schedule <name> schedule-type recurring weekly thursday [ <thursday1> <thursday2>... ] set vsys <name> schedule <name> schedule-type recurring weekly friday [ <friday1> <friday2>... ] set vsys <name> schedule <name> schedule-type recurring weekly saturday [ <saturday1> <saturday2>... ] set vsys <name> schedule <name> schedule-type recurring daily [ <daily1> <daily2>... ] set vsys <name> schedule <name> schedule-type non-recurring [ <non-recurring1> <non-recurring2>... ] set vsys <name> threats set vsys <name> threats vulnerability set vsys <name> threats vulnerability <name> set vsys <name> threats vulnerability <name> threatname <value> set vsys <name> threats vulnerability <name> affected-host set vsys <name> threats vulnerability <name> affected-host client <yes|no> set vsys <name> threats vulnerability <name> affected-host server <yes|no> set vsys <name> threats vulnerability <name> comment <value> set vsys <name> threats vulnerability <name> severity <value> set vsys <name> threats vulnerability <name> direction <value> set vsys <name> threats vulnerability <name> default-action set vsys <name> threats vulnerability <name> default-action alert set vsys <name> threats vulnerability <name> default-action drop set vsys <name> threats vulnerability <name> default-action reset-client set vsys <name> threats vulnerability <name> default-action reset-server set vsys <name> threats vulnerability <name> default-action reset-both set vsys <name> threats vulnerability <name> default-action block-ip set vsys <name> threats vulnerability <name> default-action block-ip track-by <source|source-and-destination> set vsys <name> threats vulnerability <name> default-action block-ip duration <1-3600> set vsys <name> threats vulnerability <name> default-action allow set vsys <name> threats vulnerability <name> cve [ <cve1> <cve2>... ] set vsys <name> threats vulnerability <name> bugtraq [ <bugtraq1> <bugtraq2>... ] set vsys <name> threats vulnerability <name> vendor [ <vendor1> <vendor2>... ] set vsys <name> threats vulnerability <name> reference [ <reference1> <reference2>... ] set vsys <name> threats vulnerability <name> signature set vsys <name> threats vulnerability <name> signature standard set vsys <name> threats vulnerability <name> signature standard <name> set vsys <name> threats vulnerability <name> signature standard <name> comment <value> set vsys <name> threats vulnerability <name> signature standard <name> scope <protocol-data-unit|session> set vsys <name> threats vulnerability <name> signature standard <name> order-free <yes|no> set vsys <name> threats vulnerability <name> signature standard <name> and-condition set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than context <value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to context <value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to value <0-4294967295> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> value <1-127>|<value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than context <value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match context <value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match pattern <value> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match negate <yes|no> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> set vsys <name> threats vulnerability <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value> set vsys <name> threats vulnerability <name> signature combination set vsys <name> threats vulnerability <name> signature combination time-attribute set vsys <name> threats vulnerability <name> signature combination time-attribute interval <1-3600> set vsys <name> threats vulnerability <name> signature combination time-attribute threshold <1-255> set vsys <name> threats vulnerability <name> signature combination time-attribute track-by <source|destination|source-and-destination> set vsys <name> threats vulnerability <name> signature combination order-free <yes|no> set vsys <name> threats vulnerability <name> signature combination and-condition set vsys <name> threats vulnerability <name> signature combination and-condition <name> set vsys <name> threats vulnerability <name> signature combination and-condition <name> or-condition set vsys <name> threats vulnerability <name> signature combination and-condition <name> or-condition <name> set vsys <name> threats vulnerability <name> signature combination and-condition <name> or-condition <name> threat-id <value> set vsys <name> threats spyware set vsys <name> threats spyware <name> set vsys <name> threats spyware <name> threatname <value> set vsys <name> threats spyware <name> comment <value> set vsys <name> threats spyware <name> severity <value> set vsys <name> threats spyware <name> direction <value> set vsys <name> threats spyware <name> default-action set vsys <name> threats spyware <name> default-action alert set vsys <name> threats spyware <name> default-action drop set vsys <name> threats spyware <name> default-action reset-client set vsys <name> threats spyware <name> default-action reset-server set vsys <name> threats spyware <name> default-action reset-both set vsys <name> threats spyware <name> default-action block-ip set vsys <name> threats spyware <name> default-action block-ip track-by <source|source-and-destination> set vsys <name> threats spyware <name> default-action block-ip duration <1-3600> set vsys <name> threats spyware <name> default-action allow set vsys <name> threats spyware <name> cve [ <cve1> <cve2>... ] set vsys <name> threats spyware <name> bugtraq [ <bugtraq1> <bugtraq2>... ] set vsys <name> threats spyware <name> vendor [ <vendor1> <vendor2>... ] set vsys <name> threats spyware <name> reference [ <reference1> <reference2>... ] set vsys <name> threats spyware <name> signature set vsys <name> threats spyware <name> signature standard set vsys <name> threats spyware <name> signature standard <name> set vsys <name> threats spyware <name> signature standard <name> comment <value> set vsys <name> threats spyware <name> signature standard <name> scope <protocol-data-unit|session> set vsys <name> threats spyware <name> signature standard <name> order-free <yes|no> set vsys <name> threats spyware <name> signature standard <name> and-condition set vsys <name> threats spyware <name> signature standard <name> and-condition <name> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than context <value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to value <0-4294967295> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to context <value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator equal-to qualifier <name> value <1-127>|<value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than context <value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match context <value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match pattern <value> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match negate <yes|no> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> set vsys <name> threats spyware <name> signature standard <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value> set vsys <name> threats spyware <name> signature combination set vsys <name> threats spyware <name> signature combination time-attribute set vsys <name> threats spyware <name> signature combination time-attribute interval <1-3600> set vsys <name> threats spyware <name> signature combination time-attribute threshold <1-255> set vsys <name> threats spyware <name> signature combination time-attribute track-by <source|destination|source-and-destination> set vsys <name> threats spyware <name> signature combination order-free <yes|no> set vsys <name> threats spyware <name> signature combination and-condition set vsys <name> threats spyware <name> signature combination and-condition <name> set vsys <name> threats spyware <name> signature combination and-condition <name> or-condition set vsys <name> threats spyware <name> signature combination and-condition <name> or-condition <name> set vsys <name> threats spyware <name> signature combination and-condition <name> or-condition <name> threat-id <value> set vsys <name> application set vsys <name> application <name> set vsys <name> application <name> default set vsys <name> application <name> default port [ <port1> <port2>... ] set vsys <name> application <name> default ident-by-ip-protocol <0-255,...> set vsys <name> application <name> default ident-by-icmp-type set vsys <name> application <name> default ident-by-icmp-type type <0-255,...> set vsys <name> application <name> default ident-by-icmp-type code <0-255,...> set vsys <name> application <name> default ident-by-icmp6-type set vsys <name> application <name> default ident-by-icmp6-type type <0-255,...> set vsys <name> application <name> default ident-by-icmp6-type code <0-255,...> set vsys <name> application <name> category <value> set vsys <name> application <name> subcategory <value> set vsys <name> application <name> technology <value> set vsys <name> application <name> description <value> set vsys <name> application <name> timeout <0-604800> set vsys <name> application <name> tcp-timeout <0-604800> set vsys <name> application <name> udp-timeout <0-604800> set vsys <name> application <name> tcp-half-closed-timeout <1-604800> set vsys <name> application <name> tcp-time-wait-timeout <1-600> set vsys <name> application <name> risk <1-5> set vsys <name> application <name> evasive-behavior <yes|no> set vsys <name> application <name> consume-big-bandwidth <yes|no> set vsys <name> application <name> used-by-malware <yes|no> set vsys <name> application <name> able-to-transfer-file <yes|no> set vsys <name> application <name> has-known-vulnerability <yes|no> set vsys <name> application <name> tunnel-other-application <yes|no> set vsys <name> application <name> tunnel-applications <yes|no> set vsys <name> application <name> prone-to-misuse <yes|no> set vsys <name> application <name> pervasive-use <yes|no> set vsys <name> application <name> file-type-ident <yes|no> set vsys <name> application <name> virus-ident <yes|no> set vsys <name> application <name> data-ident <yes|no> set vsys <name> application <name> no-appid-caching <yes|no> set vsys <name> application <name> alg-disable-capability <value> set vsys <name> application <name> parent-app <value> set vsys <name> application <name> signature set vsys <name> application <name> signature <name> set vsys <name> application <name> signature <name> comment <value> set vsys <name> application <name> signature <name> scope <protocol-data-unit|session> set vsys <name> application <name> signature <name> order-free <yes|no> set vsys <name> application <name> signature <name> and-condition set vsys <name> application <name> signature <name> and-condition <name> set vsys <name> application <name> signature <name> and-condition <name> or-condition set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match context <value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match pattern <value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator pattern-match qualifier <name> value <1-127>|<value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator greater-than set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator greater-than context <value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator greater-than value <0-4294967295> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator greater-than qualifier <name> value <1-127>|<value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator less-than set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator less-than context <value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator less-than value <0-4294967295> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier <name> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator less-than qualifier <name> value <1-127>|<value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator equal-to set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator equal-to context <value>|<unknown-req-tcp|unknown-rsp-tcp|unknown-req-udp|unknown-rsp-udp> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator equal-to position <value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator equal-to mask <value> set vsys <name> application <name> signature <name> and-condition <name> or-condition <name> operator equal-to value <value> set vsys <name> application-tag set vsys <name> application-tag <name> set vsys <name> application-tag <name> tag [ <tag1> <tag2>... ] set vsys <name> application-filter set vsys <name> application-filter <name> set vsys <name> application-filter <name> category [ <category1> <category2>... ] set vsys <name> application-filter <name> subcategory [ <subcategory1> <subcategory2>... ] set vsys <name> application-filter <name> technology [ <technology1> <technology2>... ] set vsys <name> application-filter <name> evasive <yes> set vsys <name> application-filter <name> excessive-bandwidth-use <yes> set vsys <name> application-filter <name> used-by-malware <yes> set vsys <name> application-filter <name> transfers-files <yes> set vsys <name> application-filter <name> has-known-vulnerabilities <yes> set vsys <name> application-filter <name> tunnels-other-apps <yes> set vsys <name> application-filter <name> prone-to-misuse <yes> set vsys <name> application-filter <name> pervasive <yes> set vsys <name> application-filter <name> is-saas <yes> set vsys <name> application-filter <name> new-appid <yes> set vsys <name> application-filter <name> risk [ <risk1> <risk2>... ] set vsys <name> application-filter <name> saas-certifications [ <saas-certifications1> <saas-certifications2>... ] set vsys <name> application-filter <name> saas-risk [ <saas-risk1> <saas-risk2>... ] set vsys <name> application-filter <name> tagging set vsys <name> application-filter <name> tagging no-tag <yes> set vsys <name> application-filter <name> tagging tag [ <tag1> <tag2>... ] set vsys <name> application-filter <name> exclude [ <exclude1> <exclude2>... ] set vsys <name> application-group set vsys <name> application-group <name> set vsys <name> application-group <name> members [ <members1> <members2>... ] set vsys <name> device-object set vsys <name> device-object <name> set vsys <name> device-object <name> description <value> set vsys <name> device-object <name> category [ <category1> <category2>... ] set vsys <name> device-object <name> profile [ <profile1> <profile2>... ] set vsys <name> device-object <name> osfamily [ <osfamily1> <osfamily2>... ] set vsys <name> device-object <name> os [ <os1> <os2>... ] set vsys <name> device-object <name> model [ <model1> <model2>... ] set vsys <name> device-object <name> vendor [ <vendor1> <vendor2>... ] set vsys <name> region set vsys <name> region <name> set vsys <name> region <name> geo-location set vsys <name> region <name> geo-location latitude <float> set vsys <name> region <name> geo-location longitude <float> set vsys <name> region <name> address [ <address1> <address2>... ] set vsys <name> tag set vsys <name> tag <name> set vsys <name> tag <name> color <color1|color2|color3|color4|color5|color6|color7|color8|color9|color10|color11|color12|color13|color14|color15|color16|color17|color19|color20|color21|color22|color23|color24|color25|color26|color27|color28|color29|color30|color31|color32|color33|color34|color35|color36|color37|color38|color39|color40|color41|color42> set vsys <name> tag <name> comments <value> set vsys <name> authentication-object set vsys <name> authentication-object <name> set vsys <name> authentication-object <name> authentication-method <web-form|no-captive-portal|browser-challenge> set vsys <name> authentication-object <name> authentication-profile <value> set vsys <name> authentication-object <name> message <value> set vsys <name> rulebase set vsys <name> rulebase security set vsys <name> rulebase security rules set vsys <name> rulebase security rules <name> set vsys <name> rulebase security rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase security rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase security rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase security rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase security rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase security rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase security rules <name> category [ <category1> <category2>... ] set vsys <name> rulebase security rules <name> application [ <application1> <application2>... ] set vsys <name> rulebase security rules <name> source-hip [ <source-hip1> <source-hip2>... ] set vsys <name> rulebase security rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ] set vsys <name> rulebase security rules <name> schedule <value> set vsys <name> rulebase security rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase security rules <name> negate-source <yes|no> set vsys <name> rulebase security rules <name> negate-destination <yes|no> set vsys <name> rulebase security rules <name> disabled <yes|no> set vsys <name> rulebase security rules <name> description <value> set vsys <name> rulebase security rules <name> group-tag <value> set vsys <name> rulebase security rules <name> hip-profiles [ <hip-profiles1> <hip-profiles2>... ] set vsys <name> rulebase security rules <name> action <deny|allow|drop|reset-client|reset-server|reset-both> set vsys <name> rulebase security rules <name> icmp-unreachable <yes|no> set vsys <name> rulebase security rules <name> rule-type <universal|intrazone|interzone> set vsys <name> rulebase security rules <name> option set vsys <name> rulebase security rules <name> option disable-server-response-inspection <yes|no> set vsys <name> rulebase security rules <name> log-setting <value> set vsys <name> rulebase security rules <name> log-start <yes|no> set vsys <name> rulebase security rules <name> log-end <yes|no> set vsys <name> rulebase security rules <name> profile-setting set vsys <name> rulebase security rules <name> profile-setting profiles set vsys <name> rulebase security rules <name> profile-setting profiles url-filtering [ <url-filtering1> <url-filtering2>... ] set vsys <name> rulebase security rules <name> profile-setting profiles data-filtering [ <data-filtering1> <data-filtering2>... ] set vsys <name> rulebase security rules <name> profile-setting profiles file-blocking [ <file-blocking1> <file-blocking2>... ] set vsys <name> rulebase security rules <name> profile-setting profiles wildfire-analysis [ <wildfire-analysis1> <wildfire-analysis2>... ] set vsys <name> rulebase security rules <name> profile-setting profiles virus [ <virus1> <virus2>... ] set vsys <name> rulebase security rules <name> profile-setting profiles spyware [ <spyware1> <spyware2>... ] set vsys <name> rulebase security rules <name> profile-setting profiles vulnerability [ <vulnerability1> <vulnerability2>... ] set vsys <name> rulebase security rules <name> profile-setting group [ <group1> <group2>... ] set vsys <name> rulebase security rules <name> qos set vsys <name> rulebase security rules <name> qos marking set vsys <name> rulebase security rules <name> qos marking ip-dscp <value>|<ef|af11|af12|af13|af21|af22|af23|af31|af32|af33|af41|af42|af43|cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7> set vsys <name> rulebase security rules <name> qos marking ip-precedence <value>|<cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7> set vsys <name> rulebase security rules <name> qos marking follow-c2s-flow set vsys <name> rulebase default-security-rules set vsys <name> rulebase default-security-rules rules set vsys <name> rulebase default-security-rules rules <name> set vsys <name> rulebase default-security-rules rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase default-security-rules rules <name> log-setting <value> set vsys <name> rulebase default-security-rules rules <name> log-start <yes|no> set vsys <name> rulebase default-security-rules rules <name> log-end <yes|no> set vsys <name> rulebase default-security-rules rules <name> profile-setting set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles url-filtering [ <url-filtering1> <url-filtering2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles data-filtering [ <data-filtering1> <data-filtering2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles file-blocking [ <file-blocking1> <file-blocking2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles wildfire-analysis [ <wildfire-analysis1> <wildfire-analysis2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles virus [ <virus1> <virus2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles spyware [ <spyware1> <spyware2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting profiles vulnerability [ <vulnerability1> <vulnerability2>... ] set vsys <name> rulebase default-security-rules rules <name> profile-setting group [ <group1> <group2>... ] set vsys <name> rulebase default-security-rules rules <name> group-tag <value> set vsys <name> rulebase default-security-rules rules <name> action <deny|allow|drop|reset-client|reset-server|reset-both> set vsys <name> rulebase default-security-rules rules <name> icmp-unreachable <yes|no> set vsys <name> rulebase application-override set vsys <name> rulebase application-override rules set vsys <name> rulebase application-override rules <name> set vsys <name> rulebase application-override rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase application-override rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase application-override rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase application-override rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase application-override rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase application-override rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase application-override rules <name> negate-source <yes|no> set vsys <name> rulebase application-override rules <name> negate-destination <yes|no> set vsys <name> rulebase application-override rules <name> disabled <yes|no> set vsys <name> rulebase application-override rules <name> description <value> set vsys <name> rulebase application-override rules <name> group-tag <value> set vsys <name> rulebase application-override rules <name> protocol <tcp|udp> set vsys <name> rulebase application-override rules <name> port <0-65535,...> set vsys <name> rulebase application-override rules <name> application <value> set vsys <name> rulebase decryption set vsys <name> rulebase decryption rules set vsys <name> rulebase decryption rules <name> set vsys <name> rulebase decryption rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase decryption rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase decryption rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase decryption rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase decryption rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase decryption rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase decryption rules <name> negate-source <yes|no> set vsys <name> rulebase decryption rules <name> negate-destination <yes|no> set vsys <name> rulebase decryption rules <name> disabled <yes|no> set vsys <name> rulebase decryption rules <name> description <value> set vsys <name> rulebase decryption rules <name> group-tag <value> set vsys <name> rulebase decryption rules <name> source-hip [ <source-hip1> <source-hip2>... ] set vsys <name> rulebase decryption rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ] set vsys <name> rulebase decryption rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase decryption rules <name> category [ <category1> <category2>... ] set vsys <name> rulebase decryption rules <name> action <no-decrypt|decrypt> set vsys <name> rulebase decryption rules <name> type set vsys <name> rulebase decryption rules <name> type ssl-forward-proxy set vsys <name> rulebase decryption rules <name> type ssh-proxy set vsys <name> rulebase decryption rules <name> type ssl-inbound-inspection <value> set vsys <name> rulebase decryption rules <name> profile <value> set vsys <name> rulebase decryption rules <name> log-success <yes|no> set vsys <name> rulebase decryption rules <name> log-fail <yes|no> set vsys <name> rulebase decryption rules <name> log-setting <value> set vsys <name> rulebase authentication set vsys <name> rulebase authentication rules set vsys <name> rulebase authentication rules <name> set vsys <name> rulebase authentication rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase authentication rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase authentication rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase authentication rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase authentication rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase authentication rules <name> source-hip [ <source-hip1> <source-hip2>... ] set vsys <name> rulebase authentication rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ] set vsys <name> rulebase authentication rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase authentication rules <name> negate-source <yes|no> set vsys <name> rulebase authentication rules <name> negate-destination <yes|no> set vsys <name> rulebase authentication rules <name> disabled <yes|no> set vsys <name> rulebase authentication rules <name> description <value> set vsys <name> rulebase authentication rules <name> group-tag <value> set vsys <name> rulebase authentication rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase authentication rules <name> category [ <category1> <category2>... ] set vsys <name> rulebase authentication rules <name> hip-profiles [ <hip-profiles1> <hip-profiles2>... ] set vsys <name> rulebase authentication rules <name> authentication-enforcement <value> set vsys <name> rulebase authentication rules <name> log-setting <value> set vsys <name> rulebase authentication rules <name> timeout <1-1440> set vsys <name> rulebase authentication rules <name> log-authentication-timeout <yes|no> set vsys <name> rulebase tunnel-inspect set vsys <name> rulebase tunnel-inspect rules set vsys <name> rulebase tunnel-inspect rules <name> set vsys <name> rulebase tunnel-inspect rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase tunnel-inspect rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase tunnel-inspect rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase tunnel-inspect rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase tunnel-inspect rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase tunnel-inspect rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase tunnel-inspect rules <name> negate-source <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> negate-destination <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> disabled <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> description <value> set vsys <name> rulebase tunnel-inspect rules <name> group-tag <value> set vsys <name> rulebase tunnel-inspect rules <name> application [ <application1> <application2>... ] set vsys <name> rulebase tunnel-inspect rules <name> tunnel-id set vsys <name> rulebase tunnel-inspect rules <name> tunnel-id vni set vsys <name> rulebase tunnel-inspect rules <name> tunnel-id vni <name> set vsys <name> rulebase tunnel-inspect rules <name> tunnel-id vni <name> id <0-16777215,...> set vsys <name> rulebase tunnel-inspect rules <name> inspect-options set vsys <name> rulebase tunnel-inspect rules <name> inspect-options max-level-inspection <1|2> set vsys <name> rulebase tunnel-inspect rules <name> inspect-options drop-over-max <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> inspect-options drop-unknown-protocol <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> inspect-options drop-strict-checking <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> inspect-options return-vxlan-to-source <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> zone-assign set vsys <name> rulebase tunnel-inspect rules <name> zone-assign source [ <source1> <source2>... ] set vsys <name> rulebase tunnel-inspect rules <name> zone-assign destination [ <destination1> <destination2>... ] set vsys <name> rulebase tunnel-inspect rules <name> monitor-options set vsys <name> rulebase tunnel-inspect rules <name> monitor-options monitor-name <value> set vsys <name> rulebase tunnel-inspect rules <name> monitor-options monitor-id <1-16777215> set vsys <name> rulebase tunnel-inspect rules <name> monitor-options log-setting-override set vsys <name> rulebase tunnel-inspect rules <name> monitor-options log-setting-override enable <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> monitor-options log-setting-override log-setting <value> set vsys <name> rulebase tunnel-inspect rules <name> monitor-options log-setting-override log-start <yes|no> set vsys <name> rulebase tunnel-inspect rules <name> monitor-options log-setting-override log-end <yes|no> set vsys <name> rulebase nat set vsys <name> rulebase nat rules set vsys <name> rulebase nat rules <name> set vsys <name> rulebase nat rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase nat rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase nat rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase nat rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase nat rules <name> service <value> set vsys <name> rulebase nat rules <name> nat-type <ipv4|nat64|nptv6> set vsys <name> rulebase nat rules <name> to-interface <value>|<any> set vsys <name> rulebase nat rules <name> source-translation set vsys <name> rulebase nat rules <name> source-translation dynamic-ip-and-port set vsys <name> rulebase nat rules <name> source-translation dynamic-ip-and-port translated-address [ <translated-address1> <translated-address2>... ] set vsys <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address set vsys <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address interface <value> set vsys <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address ip <value> set vsys <name> rulebase nat rules <name> source-translation dynamic-ip-and-port interface-address floating-ip <value> set vsys <name> rulebase nat rules <name> source-translation dynamic-ip set vsys <name> rulebase nat rules <name> source-translation dynamic-ip translated-address [ <translated-address1> <translated-address2>... ] set vsys <name> rulebase nat rules <name> source-translation dynamic-ip fallback set vsys <name> rulebase nat rules <name> source-translation dynamic-ip fallback translated-address [ <translated-address1> <translated-address2>... ] set vsys <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address set vsys <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address interface <value> set vsys <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address ip <value> set vsys <name> rulebase nat rules <name> source-translation dynamic-ip fallback interface-address floating-ip <value> set vsys <name> rulebase nat rules <name> source-translation static-ip set vsys <name> rulebase nat rules <name> source-translation static-ip translated-address <value>|<ip/netmask>|<ip-range> set vsys <name> rulebase nat rules <name> source-translation static-ip bi-directional <yes|no> set vsys <name> rulebase nat rules <name> destination-translation set vsys <name> rulebase nat rules <name> destination-translation translated-address <value>|<ip/netmask>|<ip-range> set vsys <name> rulebase nat rules <name> destination-translation translated-port <1-65535> set vsys <name> rulebase nat rules <name> destination-translation dns-rewrite set vsys <name> rulebase nat rules <name> destination-translation dns-rewrite direction <reverse|forward> set vsys <name> rulebase nat rules <name> dynamic-destination-translation set vsys <name> rulebase nat rules <name> dynamic-destination-translation translated-address <value>|<ip/netmask>|<ip-range> set vsys <name> rulebase nat rules <name> dynamic-destination-translation translated-port <1-65535> set vsys <name> rulebase nat rules <name> dynamic-destination-translation distribution <round-robin|source-ip-hash|ip-modulo|ip-hash|least-sessions> set vsys <name> rulebase nat rules <name> active-active-device-binding <primary|both|0|1> set vsys <name> rulebase nat rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase nat rules <name> disabled <yes|no> set vsys <name> rulebase nat rules <name> description <value> set vsys <name> rulebase nat rules <name> group-tag <value> set vsys <name> rulebase qos set vsys <name> rulebase qos rules set vsys <name> rulebase qos rules <name> set vsys <name> rulebase qos rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase qos rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase qos rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase qos rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase qos rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase qos rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase qos rules <name> category [ <category1> <category2>... ] set vsys <name> rulebase qos rules <name> application [ <application1> <application2>... ] set vsys <name> rulebase qos rules <name> source-hip [ <source-hip1> <source-hip2>... ] set vsys <name> rulebase qos rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ] set vsys <name> rulebase qos rules <name> schedule <value> set vsys <name> rulebase qos rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase qos rules <name> negate-source <yes|no> set vsys <name> rulebase qos rules <name> negate-destination <yes|no> set vsys <name> rulebase qos rules <name> disabled <yes|no> set vsys <name> rulebase qos rules <name> description <value> set vsys <name> rulebase qos rules <name> group-tag <value> set vsys <name> rulebase qos rules <name> dscp-tos set vsys <name> rulebase qos rules <name> dscp-tos any set vsys <name> rulebase qos rules <name> dscp-tos codepoints set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> ef set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> ef codepoint <ef> set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> af set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> af codepoint <af11|af12|af13|af21|af22|af23|af31|af32|af33|af41|af42|af43> set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> cs set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> cs codepoint <cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7> set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> tos set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> tos codepoint <cs0|cs1|cs2|cs3|cs4|cs5|cs6|cs7> set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> custom set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> custom codepoint set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> custom codepoint name <value> set vsys <name> rulebase qos rules <name> dscp-tos codepoints <name> custom codepoint value <value> set vsys <name> rulebase qos rules <name> action set vsys <name> rulebase qos rules <name> action class <1|2|3|4|5|6|7|8> set vsys <name> rulebase pbf set vsys <name> rulebase pbf rules set vsys <name> rulebase pbf rules <name> set vsys <name> rulebase pbf rules <name> from set vsys <name> rulebase pbf rules <name> from zone [ <zone1> <zone2>... ] set vsys <name> rulebase pbf rules <name> from interface [ <interface1> <interface2>... ] set vsys <name> rulebase pbf rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase pbf rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase pbf rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase pbf rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase pbf rules <name> schedule <value> set vsys <name> rulebase pbf rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase pbf rules <name> negate-source <yes|no> set vsys <name> rulebase pbf rules <name> negate-destination <yes|no> set vsys <name> rulebase pbf rules <name> disabled <yes|no> set vsys <name> rulebase pbf rules <name> description <value> set vsys <name> rulebase pbf rules <name> group-tag <value> set vsys <name> rulebase pbf rules <name> application [ <application1> <application2>... ] set vsys <name> rulebase pbf rules <name> action set vsys <name> rulebase pbf rules <name> action forward set vsys <name> rulebase pbf rules <name> action forward egress-interface <value> set vsys <name> rulebase pbf rules <name> action forward nexthop set vsys <name> rulebase pbf rules <name> action forward nexthop ip-address <value>|<ip/netmask> set vsys <name> rulebase pbf rules <name> action forward nexthop fqdn <value> set vsys <name> rulebase pbf rules <name> action forward monitor set vsys <name> rulebase pbf rules <name> action forward monitor profile <value> set vsys <name> rulebase pbf rules <name> action forward monitor disable-if-unreachable <yes|no> set vsys <name> rulebase pbf rules <name> action forward monitor ip-address <ip/netmask> set vsys <name> rulebase pbf rules <name> action forward-to-vsys <value> set vsys <name> rulebase pbf rules <name> action discard set vsys <name> rulebase pbf rules <name> action no-pbf set vsys <name> rulebase pbf rules <name> enforce-symmetric-return set vsys <name> rulebase pbf rules <name> enforce-symmetric-return enabled <yes|no> set vsys <name> rulebase pbf rules <name> enforce-symmetric-return nexthop-address-list set vsys <name> rulebase pbf rules <name> enforce-symmetric-return nexthop-address-list <name> set vsys <name> rulebase pbf rules <name> active-active-device-binding <both|0|1> set vsys <name> rulebase sdwan set vsys <name> rulebase sdwan rules set vsys <name> rulebase sdwan rules <name> set vsys <name> rulebase sdwan rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase sdwan rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase sdwan rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase sdwan rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase sdwan rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase sdwan rules <name> application [ <application1> <application2>... ] set vsys <name> rulebase sdwan rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase sdwan rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase sdwan rules <name> negate-source <yes|no> set vsys <name> rulebase sdwan rules <name> negate-destination <yes|no> set vsys <name> rulebase sdwan rules <name> disabled <yes|no> set vsys <name> rulebase sdwan rules <name> description <value> set vsys <name> rulebase sdwan rules <name> group-tag <value> set vsys <name> rulebase sdwan rules <name> path-quality-profile <value> set vsys <name> rulebase sdwan rules <name> saas-quality-profile <value> set vsys <name> rulebase sdwan rules <name> error-correction-profile <value> set vsys <name> rulebase sdwan rules <name> action set vsys <name> rulebase sdwan rules <name> action traffic-distribution-profile <value> set vsys <name> rulebase sdwan rules <name> action app-failover-for-nat-sessions <keep-existing-link|failover-to-better-path> set vsys <name> rulebase dos set vsys <name> rulebase dos rules set vsys <name> rulebase dos rules <name> set vsys <name> rulebase dos rules <name> from set vsys <name> rulebase dos rules <name> from zone [ <zone1> <zone2>... ] set vsys <name> rulebase dos rules <name> from interface [ <interface1> <interface2>... ] set vsys <name> rulebase dos rules <name> to set vsys <name> rulebase dos rules <name> to zone [ <zone1> <zone2>... ] set vsys <name> rulebase dos rules <name> to interface [ <interface1> <interface2>... ] set vsys <name> rulebase dos rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase dos rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase dos rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase dos rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase dos rules <name> schedule <value> set vsys <name> rulebase dos rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase dos rules <name> negate-source <yes|no> set vsys <name> rulebase dos rules <name> negate-destination <yes|no> set vsys <name> rulebase dos rules <name> disabled <yes|no> set vsys <name> rulebase dos rules <name> description <value> set vsys <name> rulebase dos rules <name> group-tag <value> set vsys <name> rulebase dos rules <name> protection set vsys <name> rulebase dos rules <name> protection aggregate set vsys <name> rulebase dos rules <name> protection aggregate profile <value> set vsys <name> rulebase dos rules <name> protection classified set vsys <name> rulebase dos rules <name> protection classified profile <value> set vsys <name> rulebase dos rules <name> protection classified classification-criteria set vsys <name> rulebase dos rules <name> protection classified classification-criteria address <source-ip-only|destination-ip-only|src-dest-ip-both> set vsys <name> rulebase dos rules <name> action set vsys <name> rulebase dos rules <name> action deny set vsys <name> rulebase dos rules <name> action allow set vsys <name> rulebase dos rules <name> action protect set vsys <name> rulebase dos rules <name> log-setting <value> set vsys <name> rulebase network-packet-broker set vsys <name> rulebase network-packet-broker rules set vsys <name> rulebase network-packet-broker rules <name> set vsys <name> rulebase network-packet-broker rules <name> from [ <from1> <from2>... ] set vsys <name> rulebase network-packet-broker rules <name> to [ <to1> <to2>... ] set vsys <name> rulebase network-packet-broker rules <name> source [ <source1> <source2>... ] set vsys <name> rulebase network-packet-broker rules <name> source-user [ <source-user1> <source-user2>... ] set vsys <name> rulebase network-packet-broker rules <name> destination [ <destination1> <destination2>... ] set vsys <name> rulebase network-packet-broker rules <name> application [ <application1> <application2>... ] set vsys <name> rulebase network-packet-broker rules <name> service [ <service1> <service2>... ] set vsys <name> rulebase network-packet-broker rules <name> tag [ <tag1> <tag2>... ] set vsys <name> rulebase network-packet-broker rules <name> negate-source <yes|no> set vsys <name> rulebase network-packet-broker rules <name> negate-destination <yes|no> set vsys <name> rulebase network-packet-broker rules <name> disabled <yes|no> set vsys <name> rulebase network-packet-broker rules <name> description <value> set vsys <name> rulebase network-packet-broker rules <name> group-tag <value> set vsys <name> rulebase network-packet-broker rules <name> source-hip [ <source-hip1> <source-hip2>... ] set vsys <name> rulebase network-packet-broker rules <name> destination-hip [ <destination-hip1> <destination-hip2>... ] set vsys <name> rulebase network-packet-broker rules <name> traffic-type set vsys <name> rulebase network-packet-broker rules <name> traffic-type tls-decrypted <yes|no> set vsys <name> rulebase network-packet-broker rules <name> traffic-type tls-encrypted <yes|no> set vsys <name> rulebase network-packet-broker rules <name> traffic-type non-tls <yes|no> set vsys <name> rulebase network-packet-broker rules <name> action set vsys <name> rulebase network-packet-broker rules <name> action packet-broker-profile <value>