The System Configuration which can be dynamically managed using REST Api.
This object has no members.
AAR flow statistics collection interval in seconds.
Default value: 30
Min value: 30
Max value: 2147483647
SDK attribute: AARFlowStatsInterval
AAR probe statistics collection interval in seconds.
Default value: 30
Min value: 1
SDK attribute: AARProbeStatsInterval
Whether the various VRS license flavours be merged in one pool.
Default value: false
SDK attribute: accumulateLicensesEnabled
Defines the domains allowed for access control list.
Default value: *
Format: free
Max length: 255
SDK attribute: ACLAllowOrigin
Timer in seconds for undefined VMs or auto-discovered NSGateway instances to be deleted from VSD.
Default value: 7200
Min value: 7200
Max value: 2592000
SDK attribute: ADGatewayPurgeTime
Maximum alarms per object for example max distinct alarms for specific VM (min = 5, max =20)
Default value: 10
Format: free
Min value: 5
Max value: 20
SDK attribute: alarmsMaxPerObject
When enabled, it allows Enterprise Avatar (image) to be populated on the NSGateway bootstrapping portal and blocked page notification.
Default value: true
SDK attribute: allowEnterpriseAvatarOnNSG
Defines the interval in seconds, before the expiry time, which can be used to renew the apiKey by making the '/me' API call. Minimum value is 60 s (1 minute) and maximum is 300 s (5 minutes).
Default value: 300
Min value: 60
Max value: 300
SDK attribute: APIKeyRenewalInterval
Defines the apiKey validity duration in seconds. Default and maximum values are 24 hours (86400 s) and minimum value is 10 minutes (600 s).
Default value: 86400
Min value: 600
Max value: 86400
SDK attribute: APIKeyValidity
System's Autonomous System (AS) number. Used in the automatic generation of Route Target (RT) and Route Distinguisher (RD) numbers.
Default value: 65534
Max value: 4294967295
SDK attribute: ASNumber
Flag to attach or remove system generated probes to system generated Network Performance Measurement (NPM) probes for IPSec.
Default value: true
SDK attribute: attachProbeToIPsecNPM
Flag to attach or remove system generated probes to system generated Network Performance Measurement (NPM) probes for VxLAN.
Default value: true
SDK attribute: attachProbeToVXLANNPM
Defines location, on VSD, where image files needs to be copied to. The Avatar Base URL should be configured to read the files from this location.
Default value: /opt/vsd/jboss/standalone/deployments/CloudMgmt-web.war
Format: free
Min length: 1
Max length: 255
SDK attribute: avatarBasePath
Defines the URL to read the avatar image files.
Default value: https://localhost:8443
Format: free
Min length: 1
Max length: 255
SDK attribute: avatarBaseURL
CA Certificates expiry date with time
SDK attribute: caCertificatesExpiryTime
Time stamp when this object was created.
SDK attribute: creationDate
Authentication method for csproot when local authentication is not used for CSP organization
Allowed values: LDAP, LOCAL
Default value: LOCAL
SDK attribute: csprootAuthenticationMethod
Customer ID value upper limit. This is a system wide value.
Default value: 2147483647
Min value: 10000
Max value: 2147483647
SDK attribute: customerIDUpperLimit
Customer key associated with the license.
Format: free
SDK attribute: customerKey
When this option is selected, VSS will only store flows that are denied by security policy (implicit or explicit ACLs). This requires a valid VSS license and Flow Collection enabled.
Default value: false
SDK attribute: deniedFlowCollectionEnabled
Defines total DHCP options that can be set on a domain.
Default value: 16
Min value: 1
SDK attribute: DHCPOptionSize
Default Domain Tunnel Type.
Allowed values: GRE, VLAN, VXLAN
Default value: VXLAN
SDK attribute: domainTunnelType
Timer in seconds for dynamic WAN Services to be considered as not being seen by a 7x50.
Default value: 5
Min value: 1
Max value: 7200
SDK attribute: dynamicWANServiceDiffTime
System Default Equal-cost multi-path routing count. Every Domain derives ECMP count from this value unless specifically set for the domain.
Default value: 1
Min value: 1
Max value: 8
SDK attribute: ECMPCount
Ejabberd License expiry date with time
SDK attribute: ejabberdLicenseExpiryTime
EJBCA NSG Certificate Profile
Default value: VSPClient
Format: free
Min length: 1
Max length: 255
SDK attribute: ejbcaNSGCertificateProfile
EJBCA NSG End Entity Profile
Default value: NSG
Format: free
Min length: 1
Max length: 255
SDK attribute: ejbcaNSGEndEntityProfile
EJBCA OCSP Responder CommonName
Default value: ocspsigner
Format: free
Min length: 1
Max length: 255
SDK attribute: ejbcaOCSPResponderCN
EJBCA OCSP Responder URI
Default value: http://localhost:7080/ejbca/publicweb/status/ocsp
Format: free
Min length: 1
Max length: 255
SDK attribute: ejbcaOCSPResponderURI
EJBCA VSP CA
Default value: VSPCA
Format: free
Min length: 1
Max length: 255
SDK attribute: ejbcaVspRootCa
Specifies the name of the Elastic Search Cluster.
Default value: nuage_elasticsearch
Format: free
Min length: 1
Max length: 255
SDK attribute: elasticClusterName
Elastic Search License expiry date with time
SDK attribute: elasticSearchLicenseExpiryTime
Metadata objects associated with this entity. This will contain a list of Metadata objects if the API request is made using the special flag to enable the embedded Metadata feature. Only a maximum of Metadata objects is returned based on the value set in the system configuration.
SDK attribute: embeddedMetadata
This value limits the number of embedded Metadata objects returned in the API call.
Default value: 10
Min value: 1
Max value: 50
SDK attribute: embeddedMetadataSize
Specify if scope of entity is Data center or Enterprise level
Allowed values: ENTERPRISE, GLOBAL
SDK attribute: entityScope
ESI ID offset
Default value: 10000
Min value: 1
Max value: 40000
SDK attribute: esiID
Indicates if VSD is communicating with elasticsearch over a secure channel using https.
Default value: false
SDK attribute: esSecurityEnabled
VSD event logs cleanup task execution interval in seconds.
Default value: 3600
Min value: 3600
Max value: 86400
SDK attribute: eventLogCleanupInterval
Maximum age in days for cleanup of the eventlog entries. On every periodic interval run, any eventlog entries older than this max age will be deleted.
Default value: 7
Min value: 1
Max value: 180
SDK attribute: eventLogEntryMaxAge
Defines time interval in milliseconds when events collected for a client should be processed.
Default value: 250
Min value: 250
SDK attribute: eventProcessorInterval
Defines the maximum number of events to be collected in case of events burst.
Default value: 100
Min value: 100
Max value: 500
SDK attribute: eventProcessorMaxEventsCount
Defines the maximum time period in milliseconds for the ReST server to wait before sending the events from the system.
Default value: 25000
Min value: 25000
Max value: 100000
SDK attribute: eventProcessorTimeout
Autonomous System Number used for 'EVPNBGPCommunityTag' generation.
Default value: 65534
Max value: 4294967295
SDK attribute: EVPNBGPCommunityTagASNumber
EVPNBGPCommunityTag lower limit
Default value: 0
Max value: 4294967294
SDK attribute: EVPNBGPCommunityTagLowerLimit
EVPNBGPCommunityTag upper limit
Default value: 65535
Min value: 1
Max value: 4294967295
SDK attribute: EVPNBGPCommunityTagUpperLimit
When this option is selected, VSS will only store allow/denied flows that matches explicit ingress/egress security ACL. This requires a valid VSS license and Flow Collection enabled.
Default value: false
SDK attribute: explicitACLMatchingEnabled
External object ID. Used for integration with third party systems
Format: free
SDK attribute: externalID
Forward Error Correction feedback timer in seconds. Possible values are 1, 2, 3, 4 or 5.
Default value: 1
Min value: 1
Max value: 5
SDK attribute: fecFeedbackTimer
Enables flow statistics collection. It is needed for the VSS feature, and requires a valid VSS license. This option requires 'statisticsEnabled'.
Default value: false
SDK attribute: flowCollectionEnabled
Timeout in seconds after which the traffic will be dropped, if the flow limit exceeds.
Default value: 5
Min value: 5
Max value: 3600
SDK attribute: flowDropTimeout
Gateway probe interval in seconds.
Default value: 5
Min value: 1
Max value: 30
SDK attribute: gatewayProbeInterval
Gateway probe window in seconds.
Default value: 120
Min value: 60
Max value: 600
SDK attribute: gatewayProbeWindow
Gateway rebalancing interval in seconds.
Default value: 600
Min value: 300
Max value: 86400
SDK attribute: gatewayRebalancingInterval
the MAC Address to use for those subnets that have the useGlobalMAC flag enabled.
Default value: 68:54:ED:00:59:EA
Format: free
SDK attribute: globalMACAddress
Google Maps API Key used to display maps on Nuage UI applications
Format: free
Max length: 255
SDK attribute: googleMapsAPIKey
Group Key Encryption Profile Default Seed Generation Interval in seconds.
Default value: 1200
SDK attribute: groupKeyDefaultSeedGenerationInterval
Group Key Encryption Profile Default Seed Lifetime in seconds.
Default value: 14400
SDK attribute: groupKeyDefaultSeedLifetime
Group Key Encryption Profile Default Seed Payload Authentication Algorithm.
Allowed values: HMAC_SHA1, HMAC_SHA256, HMAC_SHA512
Default value: HMAC_SHA1
SDK attribute: groupKeyDefaultSeedPayloadAuthenticationAlgorithm
Group Key Encryption Profile Default Seed Payload Encryption Algorithm.
Allowed values: AES_128_CBC, AES_256_CBC, TRIPLE_DES_CBC
Default value: AES_256_CBC
SDK attribute: groupKeyDefaultSeedPayloadEncryptionAlgorithm
Group Key Encryption Profile Default Seed Payload Signature Algorithm.
Allowed values: SHA1withRSA, SHA224withRSA, SHA256withRSA, SHA384withRSA, SHA512withRSA
Default value: SHA256withRSA
SDK attribute: groupKeyDefaultSeedPayloadSigningAlgorithm
Group Key Encryption Profile Default SEK Generation Interval in seconds.
Default value: 1200
SDK attribute: groupKeyDefaultSEKGenerationInterval
Group Key Encryption Profile Default SEK Lifetime in seconds.
Default value: 86400
SDK attribute: groupKeyDefaultSEKLifetime
Group Key Encryption Profile Default Sek Payload Encryption Algorithm.
Allowed values: RSA_1024
Default value: RSA_1024
SDK attribute: groupKeyDefaultSEKPayloadEncryptionAlgorithm
Group Key Encryption Profile Default Sek Payload Signing Algorithm.
Allowed values: SHA1withRSA, SHA224withRSA, SHA256withRSA, SHA384withRSA, SHA512withRSA
Default value: SHA256withRSA
SDK attribute: groupKeyDefaultSEKPayloadSigningAlgorithm
Group Key Encryption Profile Default Traffic Authentication Algorithm.
Allowed values: HMAC_MD5, HMAC_SHA1, HMAC_SHA256, HMAC_SHA384, HMAC_SHA512
Default value: HMAC_SHA1
SDK attribute: groupKeyDefaultTrafficAuthenticationAlgorithm
Group Key Encryption Profile Default Traffic Encryption Algorithm.
Allowed values: AES_128_CBC, AES_192_CBC, AES_256_CBC, TRIPLE_DES_CBC
Default value: AES_128_CBC
SDK attribute: groupKeyDefaultTrafficEncryptionAlgorithm
Group Key Encryption Profile Default Traffic Encryption Key Lifetime in seconds.
Default value: 600
SDK attribute: groupKeyDefaultTrafficEncryptionKeyLifetime
Time in seconds before new keys will be generated in the case of a forced re-key event
Default value: 60
SDK attribute: groupKeyGenerationIntervalOnForcedReKey
Time in seconds before new keys will be generated in the case of a revoke event
Default value: 60
SDK attribute: groupKeyGenerationIntervalOnRevoke
Group Key Encryption Profile Default Seed Generation Interval in seconds.
Default value: 20
SDK attribute: groupKeyMinimumSeedGenerationInterval
Group Key Encryption Profile Default Seed Lifetime in seconds.
Default value: 60
SDK attribute: groupKeyMinimumSeedLifetime
Group Key Encryption Profile Minimum SEK Generation Interval in seconds.
Default value: 20
SDK attribute: groupKeyMinimumSEKGenerationInterval
Group Key Encryption Profile Minimum SEK Lifetime in seconds.
Default value: 120
SDK attribute: groupKeyMinimumSEKLifetime
Group Key Encryption Profile Minimum TEK Lifetime in seconds.
Default value: 30
SDK attribute: groupKeyMinimumTrafficEncryptionKeyLifetime
Version of the current imported SaaS Application Type Master List.
Default value: 1.0
Format: free
Min length: 1
Max length: 255
SDK attribute: importedSaaSApplicationsVersion
Defines the inactive timeout for the client. If the client is inactive for more than the timeout value, server clears off all the cached information regarding the client. This value should be greater than the maximum timeout for the event processor. Value is in milliseconds.
Default value: 600000
Min value: 25000
Max value: 1800000
SDK attribute: inactiveTimeout
Autonomous System Number, Used for Infrastructure BGP PE_CE.
Default value: 65500
Min value: 1
Max value: 4294967295
SDK attribute: infrastructureBGPASNumber
Lower limit for interface Id configured on SRLinux device.
Default value: 245
Max value: 255
SDK attribute: interfaceIdLowerLimit
Upper limit for interface Id configured on SRLinux device.
Default value: 255
Max value: 255
SDK attribute: interfaceIdUpperLimit
Allows the creation of IPv6 subnets and routes with masks longer than /64.
Default value: false
SDK attribute: IPv6ExtendedPrefixesEnabled
Enable the keyserver debug monitor (ie. ksmon command)
Default value: true
SDK attribute: keyServerMonitorEnabled
KeyServer time in seconds between full resyncs of VSD data (just in case of missed events)
Default value: 3600
SDK attribute: keyServerVSDDataSynchronizationInterval
Password to access vsd key store for enabling es security.
Format: free
Max length: 255
SDK attribute: keystorePassword
Indicates the last successfully executed phase of online schema migration. This value is set automatically upon execution of online schema migration scripts.
Allowed values: EXPAND, REDUCE
Default value: REDUCE
SDK attribute: lastExecutedMigrationPhase
ID of the user who last updated the object.
Format: free
SDK attribute: lastUpdatedBy
Time stamp when this object was last updated.
SDK attribute: lastUpdatedDate
LDAP Sync-Up task interval in seconds.
Default value: 3600
Min value: 600
Max value: 86400
SDK attribute: LDAPSyncInterval
Location of the truststore which is need to store LDAP server certificates. Default is cacerts located in java.home/lib/security/cacerts. Uncomment below setting if you need to use a different file
Default value: /opt/vsd/jboss/standalone/configuration/vsd.keystore
Format: free
SDK attribute: LDAPTrustStoreCertifcate
Password to access the truststore. Uncomment below line to change its value.
Default value: changeit
Format: free
SDK attribute: LDAPTrustStorePassword
Lower limit of the domain Loopback Interface for gateways of type HWVTEP.
Default value: 600
Max value: 1023
SDK attribute: loopbackIntfLowerLimit
Upper limit of the domain Loopback Interface for gateways of type HWVTEP.
Default value: 1023
Max value: 1023
SDK attribute: loopbackIntfUpperLimit
Least Recently Used (LRU) Cache map size per subnet. Serves to hold the deleted VM instances' IP addresses.
Default value: 32
Min value: 32
Max value: 256
SDK attribute: LRUCacheSizePerSubnet
Indicates if the VSD is configured in maintenance mode. This is typically enabled during the VSD upgrade window and when enabled the VSD would support only a subset of functionality.
Default value: false
SDK attribute: maintenanceModeEnabled
Maximum failed login attempts before the account is locked. 0 = not enforced (unlimited attempts). This is not enforced if LDAP is used for authorization
Default value: 0
Max value: 10
SDK attribute: maxFailedLogins
Defines maximum results returned by the REST call (allowed maximum value is 5000).
Default value: 500
Min value: 1
Max value: 5000
SDK attribute: maxResponse
Indicates if Routing Policy Definition validation is enabled for Netconf 7x50.
Default value: false
SDK attribute: netconf7x50RoutingPolicyValidationEnabled
NSG Bootstrap Endpoint
Default value: https://proxy-bootstrap:12443/nuage/api
Format: free
Min length: 1
Max length: 255
SDK attribute: nsgBootstrapEndpoint
NSG Config Endpoint
Default value: https://{proxyDNSName}:11443/nuage/api
Format: free
Min length: 1
Max length: 255
SDK attribute: nsgConfigEndpoint
The bootstrapping UI URL on NSGateway. The URL will be redirected on NSG to its localhost so that the bootstrapping server on the NSGateway may handle the request.
Default value: http://registration.nsg
Format: free
Min length: 1
Max length: 255
SDK attribute: nsgLocalUiUrl
In case of a dual-uplink NSG, the hold down time in seconds, after which an uplink connection that recovered from failure is re-used.
Default value: 5
Max value: 30
SDK attribute: NSGUplinkHoldDownTimer
Customer ID offset, this value has to be set before JBoss starts, following its starting, any change of value will be ignored. This is a system wide value.
Default value: 10000
Min value: 10000
Max value: 2147483646
SDK attribute: offsetCustomerID
Service ID offset, this value has to be set before JBoss starts during the time of VSD installation, from thereon, any change of value will be ignored. This is a system wide value.
Default value: 20001
Min value: 20001
Max value: 2147483648
SDK attribute: offsetServiceID
Identifies the user that has created this object.
Format: free
SDK attribute: owner
Defines upper bound for the page size. Configured or input page size should be less than this max page size.
Default value: 500
Min value: 5
Max value: 1000
SDK attribute: pageMaxSize
Defines the page size for the results returned by the ReST call. This value can not exceed what has been defined in 'pageMaxSize'.
Default value: 50
Min value: 1
Max value: 1000
SDK attribute: pageSize
Determines whether per domain VLAN ID generation is required.
Default value: false
SDK attribute: perDomainVlanIdEnabled
Lower limit for the policy group ID.
Default value: 65536
Min value: 65536
Max value: 2147483646
SDK attribute: PGIDLowerLimit
Upper limit for the policy group ID.
Default value: 2147483647
Min value: 65537
Max value: 2147483647
SDK attribute: PGIDUpperLimit
Post processor thread count.
Default value: 10
Min value: 1
SDK attribute: postProcessorThreadsCount
Enables the advanced granular permissions feature. This should not be enabled without prior discussion and agreement with the Nuage Product team, as this feature is only qualified for a limited set of use cases.
Default value: false
SDK attribute: rbacEnabled
Route distinguisher (RD) lower limit.
Default value: 0
Max value: 4294967294
SDK attribute: RDLowerLimit
Route distinguisher (RD) public network lower limit.
Default value: 0
Max value: 4294967294
SDK attribute: RDPublicNetworkLowerLimit
Route distinguisher (RD) public network upper limit.
Default value: 65535
Min value: 1
Max value: 4294967295
SDK attribute: RDPublicNetworkUpperLimit
Route distinguisher (RD) upper limit.
Default value: 65535
Min value: 1
Max value: 4294967295
SDK attribute: RDUpperLimit
Route target (RT) lower limit.
Default value: 0
Max value: 4294967294
SDK attribute: RTLowerLimit
Route target (RT) public network lower limit.
Default value: 0
Max value: 4294967294
SDK attribute: RTPublicNetworkLowerLimit
Route target (RT) public network upper limit.
Default value: 65535
Min value: 1
Max value: 4294967295
SDK attribute: RTPublicNetworkUpperLimit
Route target (RT) upper limit
Default value: 65535
Min value: 1
Max value: 4294967295
SDK attribute: RTUpperLimit
Determines the time that SaaS applications were imported in VSD or if they are the ones that came with this version of VSD (built-in).
SDK attribute: SaaSApplicationsPublishDate
Autonomous System Number, used for secondary RT auto-generation.
Default value: 65533
Max value: 65533
SDK attribute: secondaryASNumber
Secondary route target lower limit.
Default value: 0
Max value: 65533
SDK attribute: secondaryRTLowerLimit
Secondary route target upper limit.
Default value: 65533
Max value: 65533
SDK attribute: secondaryRTUpperLimit
Service ID upper limit system wide value.
Default value: 2147483648
Min value: 20002
Max value: 2147483648
SDK attribute: serviceIDUpperLimit
Indicates if Threat Prevention Signature updates are enabled through Cloud.
Default value: false
SDK attribute: signatureUpdateThroughCloudEnabled
Set value to TRUE to enable stacktraces in the ReST calls.
Default value: false
SDK attribute: stackTraceEnabled
Defines the timeout in seconds for stateful ACLs that are of type ICMP. Supported in Virtual Cloud Services (VCS) only.
Default value: 180
Min value: 10
Max value: 86400
SDK attribute: statefulACLICMPTimeout
Defines the timeout in seconds for stateful ACLs that are not of type TCP.
Default value: 180
Min value: 10
Max value: 86400
SDK attribute: statefulACLNonTCPTimeout
Defines the timeout in seconds for stateful ACLs that are of type TCP.
Default value: 3600
Min value: 10
Max value: 86400
SDK attribute: statefulACLTCPTimeout
Timer in seconds for an unreacheable static WAN Services to be deleted.
Default value: 3600
Min value: 3600
Max value: 7200
SDK attribute: staticWANServicePurgeTime
This flag is used to indicate if statistics is enabled in the system. CSProot is expected to activate this through the enable statistics script.
Default value: false
SDK attribute: statisticsEnabled
Specify the IP address(es) of the stats collector.
Default value: localhost
Format: free
Min length: 1
Max length: 255
SDK attribute: statsCollectorAddress
Specify the port number(s) of the stats collector.
Default value: 29090
Format: free
SDK attribute: statsCollectorPort
Specify the protobuf port number(s) of the stats collector.
Default value: 39090
Format: free
SDK attribute: statsCollectorProtoBufPort
The location of a public proxy to statistics database server in
Format: free
Max length: 255
SDK attribute: statsDatabaseProxy
Specifies the maximum number of statistics data points to support.
Default value: 10000
Min value: 1
SDK attribute: statsMaxDataPoints
The minimum duration for statistics to be displayed on UI in seconds. Default is 30 days in seconds (2592000 s).
Default value: 2592000
SDK attribute: statsMinDuration
Specifies number of data points.
Default value: 30
Min value: 1
SDK attribute: statsNumberOfDataPoints
Specifies the Elastic Search server location.
Default value: localhost:9300
Format: free
Min length: 1
Max length: 255
SDK attribute: statsTSDBServerAddress
Sticky ECMP Idle Timeout in seconds.
Default value: 0
Max value: 300
SDK attribute: stickyECMPIdleTimeout
Following a resync on a subnet, another resync on the same subnet will be allowed based on the completion of the previous subnet resync plus the defined wait time in minutes.
Default value: 10
Min value: 5
Max value: 15
SDK attribute: subnetResyncInterval
Outstanding subnet resync interval (in seconds). System wide value.
Default value: 20
Min value: 10
Max value: 50
SDK attribute: subnetResyncOutstandingInterval
Specifies the remote syslog destination host for VSD logs.
Default value: http://localhost
Format: free
Min length: 1
Max length: 255
SDK attribute: syslogDestinationHost
Specified the remote syslog destination port for VSD.
Default value: 514
SDK attribute: syslogDestinationPort
Sysmon cleanup task run interval in seconds.
Default value: 20
Min value: 10
Max value: 3600
SDK attribute: sysmonCleanupTaskInterval
Time interval in seconds at which sysmon messages are reported by controller.
Default value: 3600
Min value: 600
Max value: 86400
SDK attribute: sysmonNodePresenceTimeout
Probe response timeout in seconds.
Default value: 30
Min value: 5
Max value: 60
SDK attribute: sysmonProbeResponseTimeout
Time interval in seconds at which sysmon objects are purged.
Default value: 86400
Min value: 1800
Max value: 2592000
SDK attribute: sysmonPurgeInterval
CSP Avatar Data
Format: free
SDK attribute: systemAvatarData
Avatar type - URL or BASE64
Allowed values: BASE64, COMPUTEDURL, URL
SDK attribute: systemAvatarType
The text for blocked page html which gets displayed to the end-users when they reach a website that is blocked by Web Filtering ACL. User can possibly include very basic html tags like
,
Format: free
Max length: 4000
SDK attribute: systemBlockedPageText
Enables IP based threat intelligence. This requires Flow Collection to be enabled.
Default value: false
SDK attribute: threatIntelligenceEnabled
Feed server download port for Threat Prevention VNF
Default value: 13080
Max value: 2147483647
SDK attribute: threatPreventionFeedServerProxyPort
Specifies the Threat Prevention Management server location.
Format: free
Max length: 255
SDK attribute: threatPreventionServer
Password to access Threat Prevention Server Password
Format: free
Max length: 255
SDK attribute: threatPreventionServerPassword
Destination TCP Port on the Proxy to connect to the Threat Prevention Management Server
Default value: 13022
Max value: 2147483647
SDK attribute: threatPreventionServerProxyPort
Username to accessThreat Prevention management Server.
Format: free
Max length: 255
SDK attribute: threatPreventionServerUsername
Syslog server port for Threat Prevention Service
Default value: 13514
Max value: 2147483647
SDK attribute: threatPreventionSyslogProxyPort
Two Factor Code Expiration time in seconds for bootstrapping gateways. (min = 60, max = 604800)
Default value: 300
Min value: 60
Max value: 604800
SDK attribute: twoFactorCodeExpiry
The number of characters in the generated Two Factor Code for bootstrapping gateways. (min = 4, max = 10)
Default value: 6
Min value: 4
Max value: 10
SDK attribute: twoFactorCodeLength
Two Factor Seed length in bytes for generating the bootstrapping code. (min = 0, max = 255)
Default value: 96
Max value: 255
SDK attribute: twoFactorCodeSeedLength
If VCIN Active/Standby is enabled, this needs to be the load-balancer IP which sits in front of the Active and Standby VCIN nodes. The VRS will make its API calls to this load-balancer
Format: free
SDK attribute: vcinLoadBalancerIP
Enable Virtual Firewall Rule creation and management. This will be available only with VSS license
Default value: false
SDK attribute: virtualFirewallRulesEnabled
Offset for the Per domain VLAN ID for gateways of type HWVTEP
Default value: 0
Max value: 4096
SDK attribute: VLANIDLowerLimit
Upper limit for the per domain VLAN ID for gateways of type HWVTEP
Default value: 0
Max value: 4096
SDK attribute: VLANIDUpperLimit
Least Recently Used (LRU) Map size for VMs, this value has to be set based on the amount of memory given to VSD's JVM.
Default value: 5000
Min value: 1000
Max value: 100000
SDK attribute: VMCacheSize
Timer in seconds for undefined VMs to be deleted.
Default value: 60
Min value: 60
Max value: 600
SDK attribute: VMPurgeTime
After performing a resync on VMs, if no controller returns with a VM request within the specified timeframe then it will be deleted. The deletion wait time is in minutes.
Default value: 2
Min value: 1
Max value: 5
SDK attribute: VMResyncDeletionWaitTime
Outstanding VM resync interval (in seconds). System wide value.
Default value: 1000
Min value: 500
Max value: 2000
SDK attribute: VMResyncOutstandingInterval
Timer in seconds for unreachable VMs to be marked for cleanup.
Default value: 7200
Min value: 3600
Max value: 86400
SDK attribute: VMUnreachableCleanupTime
Timer in seconds for considering a VM as unreachable.
Default value: 3600
Min value: 1800
Max value: 7200
SDK attribute: VMUnreachableTime
Timeout for VNF task running on the NSG by the NSG Agent (in seconds).
Default value: 3600
Min value: 300
Max value: 10000
SDK attribute: VNFTaskTimeout
Virtual network ID offset
Default value: 1
Min value: 1
Max value: 16777214
SDK attribute: VNIDLowerLimit
Virtual network ID public network lower limit
Default value: 1
Min value: 1
Max value: 16777215
SDK attribute: VNIDPublicNetworkLowerLimit
Virtual network ID public network upper limit
Default value: 16777215
Min value: 2
Max value: 16777215
SDK attribute: VNIDPublicNetworkUpperLimit
Virtual network ID upper limit
Default value: 16777165
Min value: 2
Max value: 16777215
SDK attribute: VNIDUpperLimit
Defines the timeout in seconds for vport initialization to stateful. Default value is 300 seconds and the timeout should be within a range going from 0 to 86400 seconds.
Default value: 300
Max value: 86400
SDK attribute: VPortInitStatefulTimer
This flag is used to indicate that whether VSC is on the same version as VSD or not.
Default value: true
SDK attribute: VSCOnSameVersionAsVSD
Version of the current imported Application Signatures.
Format: free
Min length: 1
Max length: 255
SDK attribute: VSDAARApplicationVersion
Determines the time that Application Signatures were published and added in the VSD or if the signatures used are the ones that came with the current version of VSD.
Format: free
SDK attribute: VSDAARApplicationVersionPublishDate
True means VSD readonly mode enabled. False means VSD readonly mode disabled.
Default value: false
SDK attribute: VSDReadOnlyMode
This flag is used to indicate whether VSD upgrade is complete. It is expected that csproot will set the value to true after VSD upgrade is complete and ensuring that all VSC's audits and Gateway audits with VSD are completed.
Default value: true
SDK attribute: VSDUpgradeIsComplete
VSS statistics collection frequency in seconds.
Default value: 30
Min value: 30
Max value: 300
SDK attribute: VSSStatsInterval
Indicates web categorization service url. Applicable only for web filtering type CLOUD_SERVICE
Default value: incompasshybridpc.netstar-inc.com
Format: free
Max length: 255
SDK attribute: webCatSrvUrl
Indicates the type of web filtering. Possible values are CLOUD_SERVICE, VM
Allowed values: CLOUD_SERVICE, VM
Default value: VM
SDK attribute: webFilteringType
Whether the NSG should auto bootstrap using ZFB
Default value: true
SDK attribute: ZFBBootstrapEnabled
Retry time for the ZFB daemon to recheck ZFBRequest Status in seconds
Default value: 30
Min value: 15
Max value: 240
SDK attribute: ZFBRequestRetryTimer
Time for the ZFB scheduler to wait in seconds before deleting a stale request
Default value: 1440
Min value: 1
Max value: 10080
SDK attribute: ZFBSchedulerStaleRequestTimeout