Activates, deactivates, and displays security hardening rules. Configures, unconfigures, or displays firewall settings.
viosecure -level LEVEL [-apply] [ -rule ruleName] [-outfile filename]
viosecure -view [ -actual | -latest] [-rule ruleName | -nonint]
viosecure -file rulesFile
viosecure -changedRules
viosecure -undo
viosecure -firewall on [[ -force] -reload]
viosecure -firewall allow | deny -port number [-interface ifname] [-address IPaddress] [-timeout Timeout] [-remote]
viosecure -firewall view [-fmt delimiter]
The viosecure activates, deactivates, and displays security hardening rules. By default, none of the security strengthening features are activated after installation. Upon running the viosecure command, the command guides the user through the proper security settings, which can be high, medium, or low. After this initial selection, a menu is displayed itemizing the security configuration options that are associated with the selected security level in sets of 10. These options can be accepted in whole, individually toggled off or on, or ignored. After any changes, viosecure continues to apply the security settings to the computer system.
The viosecure command also configures, unconfigures, and displays network firewall settings. Using the viosecure command, you can activate and deactivate specific ports and specify the interface and IP address from which connections are allowed.
viosecure -level high
viosecure -level high -apply
viosecure -view
viosecure -level default
viosecure -firewall on
viosecure -firewall off
viosecure -firewall allow -port login -address 10.10.10.10
viosecure -firewall allow -port login -timeout 7d
viosecure -firewall allow -port 514 -interface en0 -remote
viosecure -firewall deny -port login -address 10.10.10.10
viosecure -firewall view
viosecure -undo /etc/security/aixpert/core/undo.xml
viosecure -level low -outfile myfile
viosecure -file myfile
viosecure -view -latest
viosecure -changedRules
viosecure -level low -rule lls_maxage -apply
viosecure -view -rule lls_maxage
viosecure -view -rule lls_maxage -latest
viosecure -view -actual