Archive Calculate
Cisco IOS XE Catalyst SD-WAN Qualified Command Reference

Cisco IOS XE Catalyst SD-WAN Qualified Command Reference

2024-11-25 Type of service to allow or disallow on the WAN tunnel connection.

Related articles

VPN Unlimited Review 2024 Guide for new players 6 Ways to Watch Jeopardy! Without Cable SV3C C20 Security Camera User Manual

Type of service to allow or disallow on the WAN tunnel
connection.

can be all or one of more of bfd, bgp,
dhcp, dns, https, icmp,
netconf, ntp, ospf, sshd, and
stun. By default, DHCP (for DHCPv4 and DHCPv6), DNS,
HTTPS, and ICMP are enabled on a tunnel interface.

You cannot disallow the following services: DHCP, DNS, NTP, and STUN.
If you allow the NTP service on the tunnel interface, you must
configure the address of an NTP server with the system
ntp
command. The allow-service
stun
command is pertains pertain to allow or
disallow a Cisco IOS XE SD – WAN device to generate request to a
generic STUN server so that the device can determine whether it is
behind a NAT and , if so , what kind of NAT it is and what the
device ‘s public ip address and public port number are . On a Cisco
IOS XE SD – WAN device that is behind a NAT , you is have can also have tunnel
interface to discover its public ip address and port number from the
Cisco vbond orchestrator , by configure the
vbond-as-stun-server command on
the tunnel interface .

To configure more than one service , include multiple
allow – service command . configure allow – service
all is overrides override any command that allow or disallow individual
service .