man bigpipe
BIGPIPE(1) BIG-IP Manual BIGPIPE(1)
NAME
bigpipe - a command line interface for configuring BIG-IP and display-
ing configuration data and statistics
SYNOPSIS
bigpipe [verify] [[base] list] [load file] [help] [[base] save file] [version]
[reset] [merge file]
DESCRIPTION
bigpipe performs a variety of configuration and administration tasks. For
details on the complete set of bigpipe commands.
OPTIONS Options can be combined in any order to create the desired output. The
options include:
verify Check command syntax.
[base] list Display current BIG-IP configuration. With the base option,
the current base configuration is displayed, otherwise the current high
level configuration is displayed.
load (file | -) Removes the loaded configuration and loads the file
configuration file at startup.
base load Loads the base configuration file and removes the high-level
configuration file at startup. Loads only the bigip_base.conf and the
base monitor file. The base profile files are not reloaded.
merge (file | -) Loads the file configuration file without resetting
current configuration.
help Only print out options.
save (file | - ) Saves the high level configuration in the file config-
uration file. (default: /config/bigip.conf).
save all Saves the high level and base level configuration.
base save (file | -) Saves the low level base configuration in the file
configuration file. (default: /config/bigip_base.conf).
version Print out detailed version information.
reset Resets the BIG-IP configuration. This command clears the
bigip.conf that is running in memory. The bigip.conf file in /config
remains intact. This command does not reset the management configura-
tion or the base network configuration.
COMMANDS
The following commands and options are found in many of the bigpipe
commands. Any of the following commands can be followed by , for
example,
rated by spaces. You may omit the surrounding double quotes from the
string token if the string does not contain spaces or any unusual char-
acters.
any :
The following list of commands is a complete list of commands for
the bigpipe utility. For more information on a specific command,
please refer to the man page for that command. For details about
each command, see the man page for the specific command.
(
[
[
bigpipe [-log] [verify]
help
[base] list
[base] load [
merge (
[base] save (
[base] reset [load [
arp help
arp
static
dynamic
all
auth ldap help
auth ldap
auth ldap (
bind dn (
bind pw (
bind timeout
check host attr (enable | disable)
debug (enable | disable)
filter (
group dn (
group member attr (
idle timeout
ignore authinfo unavail (enable | disable)
login attr (
scope (base | one | sub)
search base dn (
search timeout
servers (
service (
ssl (enable | disable)
ssl ca cert file (
ssl check peer (enable | disable)
ssl ciphers (
ssl client cert (
ssl client key (
user template (
version
warnings (enable | disable)
auth ldap (
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth ldap [
auth radius help
auth radius
auth radius (
accounting bug (enable | disable)
client (
debug (enable | disable)
retries
servers (
auth radius (
auth radius [
auth radius [
auth radius [
auth radius [
auth radius [
auth radius [
auth radius [
auth ssl cc ldap help
auth ssl cc ldap
auth ssl cc ldap (
admin dn (
admin pw (
auth header (enable | disable)
cache size
cache timeout (
certmap base (
certmap key (
certmap use serial (enable | disable)
group base (
group key (
group member key (
insert client status (enable | disable)
onfail reject (enable | disable)
onfail user (
remote user header (enable | disable)
role key (
search (user | certmap | cert)
secure (enable | disable)
servers (
user base (
user key (
valid groups (
valid roles (
auth ssl cc ldap (
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl cc ldap [
auth ssl ocsp help
auth ssl ocsp
auth ssl ocsp (
responders (
auth ssl ocsp (
auth ssl ocsp [
auth ssl ocsp [
auth ssl ocsp [
auth tacacs help
auth tacacs
auth tacacs (
acct all (enable | disable)
debug (enable | disable)
encrypt (enable | disable)
first hit (enable | disable)
protocol (
secret (
servers (
service (
auth tacacs (
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
auth tacacs [
baud rate
baud rate [show]
class help
class
class
filename
type (ip | string | value)
mode (read | rw)
class (
class [
class [
class [
class [
class [
class [
class [
class [
compress [
compress [
config help
config save
config [support] save
config install
config install
config sync min
config sync pull
config sync [all]
config sync show
config check [all]
conn (
conn [
conn (
conn [
[client (
[protocol
daemon help
daemon
daemon (
heartbeat monitor [stand alone | redundant] (enable | disable | reboot |
failover | restart | failover restart | restart all)
running (enable | disable)
running timeout
daemon [
daemon [
daemon [
daemon [
daemon [
db help
db
db (
db [
db [
failover help
failover (standby | failback)
failover [show [all]]
global [stats [show [all]]]
global stats reset
ha table [show [all]]
http [stats [show [all]]]
http stats reset
icmp [stats [show [all]]]
icmp stats reset
interface help
interface
interface (
(enable | disable)
media
auto edge (enable | disable)
edge port (true | false)
link type (p2p | shared | auto)
stp (enable | disable)
pause (rx | tx | tx rx | none)
1000baseT
10GbaseT
10GbaseER full | auto
interface [
interface [
interface [
interface [
interface [
interface [
interface [
interface [
interface [
interface [
interface [
interface [
interface
ip [stats [show [all]]]
ip stats reset
memory [stats [show [all]]]
mgmt help
mgmt
mgmt (
netmask
mgmt (
mgmt [
mgmt [
mgmt [
mgmt route help
mgmt route
mgmt route (
default [inet | inet6]
gateway
mtu
mgmt
reject
mgmt route (
mgmt route [
mgmt route [
mgmt route [
mgmt route [
mgmt route [
mirror help
mirror
mirror (
interface (
mirror (
mirror [
mirror [
mirror [
monitor help
monitorroot
monitor
monitor
monitor (
::= (
accounting node
accounting port
agent
agent type
args
base
call id
cert
cipherlist
cmd
compatibility
community
cpu coefficient
cpu threshold
debug
dest (
disk coefficient
disk threshold
domain
database
fault
filename
filter
folder
framed addr
get
interval
is read only
mandatoryattrs
mem coefficient
mem threshold
method
metrics
mode
namespace
newsgroup
param name
param type
param value
password
post
protocol
recv
recvrow
recvcolumn
return type
return value
reverse
run
secret
security
send
sendpackets
server id
session id
snmp version
timeout (
timeoutpackets
transparent
urlpath
username
monitor (
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
monitor [
(
min
none
nat help
nat
nat
(enable | disable)
arp (enable | disable)
unit
vlan
nat (
nat [
nat [
nat [
nat [
nat [
nat [
nat [
ndp
ndp (
ndp [
ndp [
node help
node
node
dynamic ratio
limit
monitor (
ratio
session (enable | disable)
(up | down)
screen (
node * [{] monitor (
node [
node [
node [
node [
node [
node [
node [
node [
node [
ocsp responder help
ocsp responder
ocsp responder (
ca file
ca path
certid digest (sha1 | md5)
certs (enable | disable)
chain (enable | disable)
check certs (enable | disable)
explicit (enable | disable)
ignore aia (enable | disable)
intern (enable | disable)
sig verify (enable | disable)
sign key
sign key pass phrase
sign other
sign digest (sha1 | md5)
signer
status age
trust other (enable | disable)
url
va file
validity period
verify (enable | disable)
verify cert (enable | disable)
verify other
ocsp responder (
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
ocsp responder [
packet filter help
packet filter [{]
allow trusted [{]
addresses (
vlans (
macs (
[}]
packet filter [
packet filter [
packet filter [
packet filter [
packet filter [
packet filter
order
action (accept | discard | reject | continue)
vlan (
log (enable | disable)
rate class (
filter {
packet filter (
packet filter [
packet filter [
packet filter [
packet filter [
packet filter [
packet filter [
packet filter [
packet filter [
packet filter [
persist [
persist (
[mode (source addr | dest addr | cookie | ssl | msrdp | universal | sip)]
platform [show [all]]
platform annunciator (serial | part) [show]
platform base mac [show]
platform chassis [show]
platform host board (serial | part) [show]
platform switch board (serial | part) [show]
platform type [show]
pool help
pool
pool (
lb method (rr | node ratio | member ratio | member least conn |
member observed | member predictive | fastest |
least conn | predictive | observed | dynamic ratio |
fastest app resp)
min active members
min up members
min up members (reboot | failover | restart all | enable | disable)
ip tos to client (
ip tos to server (
link qos to client (
link qos to server (
slow ramp time
snat (enable | disable)
nat (enable | disable)
unit
monitor all
action on svcdown (none | reset | drop | reselect)
member
ratio
dynamic ratio
priority
session (enable | disable)
monitor (
(up | down)
limit
pool (
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool [
pool member *:port monitor
pool member *:port monitor [show]
NOTES
A member list without add or delete and without any member
arg
values must be inside the braces of a pool command.
The member list with add or delete cannot be inside the
braces of a
pool command.
profile help
profile (
profile [
profile [
profile [
profile auth help
profile auth
profile auth (
config (
credential source (http basic auth | default)
defaults from (
mode (enable | disable | default)
type (ldap | radius | ssl cc ldap | ssl ocsp | tacacs | generic)
rule (
idle timeout (
profile auth (
profile auth [
profile auth [
profile auth [
profile auth [
profile auth [
profile auth [
profile auth [
profile auth [
profile auth [
profile auth [
profile clientssl help
profile clientssl
profile clientssl (
defaults from (
mode (enable | disable | default)
key (
cert (
chain (
ca file (
crl file (
client cert ca (
ciphers (
options ([MICROSOFT_SESS_ID_BUG] [NETSCAPE_CHALLENGE_BUG]
[NETSCAPE_REUSE_CIPHER_CHANGE_BUG] [SSLREF2_REUSE_CERT_TYPE_BUG]
[MICROSOFT_BIG_SSLV3_BUFFER] [MSIE_SSLV2_RSA_PADDING]
[SSLEAY_080_CLIENT_DH_BUG] [TLS_D5_BUG] [TLS_BLOCK_PADDING_BUG]
[DONT_INSERT_EMPTY_FRAGMENTS] [ALL_BUGFIXES] [TLS_ROLLBACK_BUG]
[SINGLE_DH_USE] [EPHEMERAL_RSA] [CIPHER_SERVER_PREFERENCE]
[PKCS1_CHECK_1] [PKCS1_CHECK_2] [NETSCAPE_CA_DN_BUG]
[NETSCAPE_DEMO_CIPHER_CHANGE_BUG] [NO_SSLv2] [NO_SSLv3] [NO_TLSv1]
[NO_SESSION_RESUMPTION_ON_RENEGOTIATION] [PASSIVE_CLOSE] | none |
default)
modssl methods (enable | disable | default)
cache size (
cache timeout (
renegotiate period (
renegotiate size (
renegotiate max record delay (
default)
peer cert mode (request | require | ignore | auto | default)
authenticate (once | always | default)
authenticate depth (
unclean shutdown (enable | disable | default)
strict resume (enable | disable | default)
nonssl (enable | disable | default)
passphrase (
handshake timeout (
alert timeout (
profile clientssl (
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile clientssl [
profile fasthttp help
profile fasthttp
profile fasthttp (
client close timeout (
conn pool idle timeout override (
default)
conn pool max reuse (
conn pool max size (
conn pool min size (
conn pool replenish (enable | disable | default)
conn pool step (
force http10 response (enable | disable | default)
header insert (
http11 close workarounds (enable | disable | default)
idle timeout (
insert xforwarded for (enable | disable | default)
layer7 (enable | disable | default)
max header size (
max requests (
mss override (
reset on timeout (enable | disable | default)
server close timeout (
unclean shutdown (enable | disable | fast)
profile fasthttp [
profile fasthttp [
profile fasthttp (
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fasthttp [
profile fastL4 help
profile fastL4
profile fastL4 (
defaults from (
idle timeout (
ip tos to client (
ip tos to server (
link qos to client (
link qos to server (
loose close (enable | disable | default)
loose initiation (enable | disable | default)
mss override (
pva acceleration (none | assist | full | default)
reassemble fragments (enable | disable | default)
reset on timeout (enable | disable | default)
tcp close timeout (
tcp generate isn (enable | disable | default)
tcp handshake timeout (
tcp strip sack (enable | disable | default)
tcp timestamp (preserve | strip | rewrite | default)
tcp wscale (preserve | strip | rewrite | default)
rtt from client (enable | disable | default)
rtt from server (enable | disable | default)
profile fastL4 [
profile fastL4 [
profile fastL4 (
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile fastL4 [
profile ftp help
profile ftp
profile ftp (
defaults from (
translate extended (enable | disable | default)
data port (
profile ftp [
profile ftp [
profile ftp (
profile ftp [
profile ftp [
profile ftp [
profile ftp [
profile http help
profile http
profile http (
defaults from (
adaptive parsing (enable | disable | default)
basic auth realm (
compress (enable | disable | selective | default)
compress browser workarounds (enable | disable | default)
compress buffer size (
compress content type exclude (
compress content type include (
compress cpu saver (enable | disable | default)
compress cpu saver high (
compress cpu saver low (
compress gzip level (
compress gzip memory level (
compress gzip window size (
compress http 1.0 (enable | disable | default)
compress min size (
compress prefer (deflate | gzip | default)
compress uri exclude (
compress uri include (
compress vary header (enable | disable | default)
fallback (
header insert (
header erase (
insert xforwarded for (enable | disable | default)
keep accept encoding (enable | disable | default)
lws separator (
lws width (
max header size (
max requests (
oneconnect transformations (enable | disable | default)
pipelining (enable | disable | default)
ramcache (enable | disable | default)
ramcache aging rate (
ramcache ignore client cache control (none | max age | all | default)
ramcache insert age header (enable | disable | default)
ramcache max age (
ramcache max entries (
ramcache max object size (
ramcache min object size (
ramcache size (
ramcache uri exclude (
ramcache uri include (
ramcache uri pinned (
redirect rewrite (none | all | matching | nodes | default)
response (unchunk | rechunk | preserve chunk | selective chunk | default)
profile http (
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
[host
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile http [
profile httpclass
profile httpclass (
defaults from (
asm (enable | disable | default)
cookies (
headers (
hosts (
paths (
pool (
priority (
NOTE: "regex" and "glob" act as sticky switches for a single list
profile httpclass (
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile httpclass [
profile oneconnect help
profile oneconnect
profile oneconnect (
defaults from (
idle timeout (
max size (
max age (
max reuse (
source mask (
profile oneconnect [
profile oneconnect [
profile oneconnect (
profile oneconnect [
profile oneconnect [
profile oneconnect [
profile oneconnect [
profile oneconnect [
profile oneconnect [
profile oneconnect [
profile persist help
profile persist
profile persist (
defaults from (
mode (source addr | dest addr | cookie | ssl | msrdp | universal | sip |
default)
rule (
timeout (
mask (
cookie mode (insert | rewrite | passive | hash | default)
cookie expiration ([
cookie hash offset (
cookie hash length (
cookie name (
mirror (enable | disable | default)
msrdp session directory (enable | disable | default)
map proxies (enable | disable | default)
across pools (enable | disable | default)
across services (enable | disable | default)
across virtuals (enable | disable | default)
profile persist (
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile persist [
profile serverssl help
profile serverssl
profile serverssl (
defaults from (
mode (enable | disable | default)
key (
cert (
chain (
ca file (
crl file (
ciphers (
options ([MICROSOFT_SESS_ID_BUG] [NETSCAPE_CHALLENGE_BUG]
[NETSCAPE_REUSE_CIPHER_CHANGE_BUG] [SSLREF2_REUSE_CERT_TYPE_BUG]
[MICROSOFT_BIG_SSLV3_BUFFER] [MSIE_SSLV2_RSA_PADDING]
[SSLEAY_080_CLIENT_DH_BUG] [TLS_D5_BUG] [TLS_BLOCK_PADDING_BUG]
[DONT_INSERT_EMPTY_FRAGMENTS] [ALL_BUGFIXES] [TLS_ROLLBACK_BUG]
[SINGLE_DH_USE] [EPHEMERAL_RSA] [CIPHER_SERVER_PREFERENCE]
[PKCS1_CHECK_1] [PKCS1_CHECK_2] [NETSCAPE_CA_DN_BUG]
[NETSCAPE_DEMO_CIPHER_CHANGE_BUG] [NO_SSLv2] [NO_SSLv3] [NO_TLSv1]
[NO_SESSION_RESUMPTION_ON_RENEGOTIATION] [PASSIVE_CLOSE] | none |
default)
modssl methods (enable | disable | default)
renegotiate period (
r