: Set Commands Removed in PAN-OS 10.1
Focus
Focus

Set Commands Removed in PAN-OS 10.1

Table of Contents

Set Commands Removed in PAN-OS 10.1

Command line interface 'set' commands that are removed in PAN-OS 10.1:
The following commands are no longer available in the 10.1 release.
set deviceconfig system hsm-settings provider thales-nshield-connect set deviceconfig system hsm-settings provider thales-nshield-connect hsm-server set deviceconfig system hsm-settings provider thales-nshield-connect hsm-server <name> set deviceconfig system hsm-settings provider thales-nshield-connect hsm-server <name> server-address <ip/netmask> set deviceconfig system hsm-settings provider thales-nshield-connect rfs-address <ip/netmask>
set deviceconfig system ssh profiles mgmt-profiles client-profiles set deviceconfig system ssh profiles mgmt-profiles client-profiles<name> set deviceconfig system ssh mgmt client-profile <value>
set deviceconfig setting filemgr-service-setting set deviceconfig setting filemgr-service-setting filemgr-server<value> set deviceconfig setting session dhcp-bcast-session-on <yes|no> set deviceconfig setting logging enhanced-application-logging disable-global dp-channel set deviceconfig setting management admin-session max-session-count <1-4>
set network virtual-router<name> routing-table ip static-route <name> path-monitor monitor-destinations <name> source <value>|<DHCP> set network logical-router <name> vrf <name> routing-table ip static-route <name> path-monitor monitor-destinations <name> source <value>|<DHCP> set network shared-gateway <name> service <name> protocol tcp port <value> set network shared-gateway <name> service <name> protocol tcp source-port <value> set network shared-gateway <name> service <name> protocol udp port <value> set network shared-gateway <name> service <name> protocol udp source-port <value>
set shared service<name> protocol tcp port <value> set shared service <name> protocol tcp source-port <value> set shared service <name> protocol udp port <value> set shared service <name> protocol udp source-port <value>
set shared profiles hip-objects<name> anti-malware criteria product-version within versions <1-65535> set shared profiles hip-objects <name> anti-malware criteria product-version not-within versions <1-65535> set shared profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address <name> probe-interval <1-3600> set shared profiles sdwan-saas-quality <name> monitor-mode static-ip fqdn probe-interval <1-3600> set shared profiles sdwan-saas-quality <name> monitor-mode http-https probe-interval <1-3600>
set shared profiles sdwan-error-correction<name> mode forward-error-correction transmit-hold-timer <1-5000> set shared profiles sdwan-error-correction <name> mode packet-duplication transmit-hold-timer-pd <1-5000>
set shared reports<name> type decryption group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|vsys_name|device_name|tls_version|tls_keyxchg|tls_enc|tls_auth|ec_curve|err_index|root_status|proxy_type|policy_name|cn|issuer_cn|root_cn|sni|error|src_dag|dst_dag|src_edl|dst_edl|container_id|pod_namespace|pod_name|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time> set shared reports <name> type desum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|srcuser|dstuser|vsys|tls_version|tls_keyxchg|tls_enc|tls_auth|policy_name|sni|error|err_index|src_edl|dst_edl|container_id|pod_namespace|pod_name|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|outbound_if|inbound_if|rule|dport|sport|proto> set shared reports <name> type threat group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|vsys_name|device_name|parent_session_id|parent_start_time|threatid|category|severity|direction|http_method|nssai_sst|http2_connection|xff_ip|threat_name|src_edl|dst_edl|dynusergroup_name|hostid|partial_hash|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|misc|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|pbf-s2c|pbf-c2s|flag-nat|flag-pcap|subtype|transaction|captive-portal|flag-proxy|non-std-dport|tunnelid|monitortag|users|category-of-threatid|threat-type> set shared reports <name> type data group-by <action|app|category-of-app|direction|dport|dst|dstuser|from|inbound_if|misc|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|severity|sport|src|srcuser|subcategory-of-app|subtype|technology-of-app|container-of-app|threatid|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|vsys_name|device_name|data-type|filename|tunnelid|monitortag|parent_session_id|parent_start_time|http2_connection|tunnel|xff_ip|src_dag|dst_dag>
set shared reports<name> type data values [ <values1> <values2>... ] set shared reports <name> type data labels [ <labels1> <labels2>... ] set shared reports <name> type data sortby <repeatcnt|nunique-of-users> set shared reports <name> type data set shared reports <name> type data aggregate-by [ <aggregate-by1> <aggregate-by2>... ] set shared reports <name> type thsum group-by
<serial|time_generated|vsys_name|device_name|app|src|dst|rule|threatid|srcuser|dstuser|srcloc|dstloc|xff_ip|vsys|from|to|dport|action|severity|inbound_if|outbound_if|category|parent_session_id|parent_start_time|tunnel|direction|assoc_id|ppid|http2_connection|rule_uuid|threat_name|src_edl|dst_edl|hostid|dynusergroup_name|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|subtype|tunnelid|monitortag|category-of-threatid|threat-type> set shared reports <name> type traffic group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|vsys_name|device_name|parent_session_id|parent_start_time|category|session_end_reason|action_source|nssai_sst|nssai_sd|http2_connection|xff_ip|dynusergroup_name|src_edl|dst_edl|hostid|session_owner|policy_id|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|pbf-s2c|pbf-c2s|decrypt-mirror|threat-type|flag-nat|flag-pcap|captive-portal|flag-proxy|non-std-dport|transaction|sym-return|sessionid|sesscache_l7_done|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|tunnelid|monitortag> set shared reports <name> type urlsum group-by <serial|time_generated|vsys_name|device_name|app|category|src|dst|rule|srcuser|dstuser|srcloc|dstloc|vsys|from|to|dev_serial|inbound_if|outbound_if|dport|action|tunnel|url_domain|user_agent|http_method|http2_connection|parent_session_id|parent_start_time|rule_uuid|xff_ip|src_edl|dst_edl|hostid|dynusergroup_name|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|url_category_list|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|nunique-of-users|tunnelid|monitortag|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app> set shared reports <name> type trsum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|xff_ip|rule|srcuser|dstuser|srcloc|dstloc|category|vsys|from|to|sessions|dport|action|tunnel|inbound_if|outbound_if|parent_session_id|parent_start_time|assoc_id|http2_connection|rule_uuid|src_edl|dst_edl|dynusergroup_name|s_decrypted|s_encrypted|hostid|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|tunnelid|monitortag|standard-ports-of-app|ncontent> set shared reports <name> type auth group-by <serial|time_generated|vsys_name|device_name|vsys|ip|user|normalize_user|object|authpolicy|authid|vendor|clienttype|event|factorno|authproto|rule_uuid|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|serverprofile|desc|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac> set shared reports <name> type hipmatch group-by <serial|time_generated|vsys_name|device_name|srcuser|vsys|machinename|src|matchname|os|matchtype|srcipv6|hostid|devcategory|profile|model|vendor|osfamily|osversion|mac|devhost|source|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|hostname|osfamily|osversion> set shared reports <name> type hipmatch last-match-by <time_generated>
set shared ssl-tls-service-profile<name> protocol-settings max-version <tls1-0|tls1-1|tls1-2|tls1-3|max> set shared ssl-tls-service-profile <name> protocol-settings enc-algo-chacha20-poly1305 <yes|no> set shared admin-role <name> role device webui objects decryption decryption-forwarding-profile <enable|read-only|disable> set shared admin-role <name> role device webui device policy-recommendation <enable|read-only|disable> set shared admin-role <name> role device restapi objects decryption-forwarding-profiles <enable|read-only|disable> set shared admin-role <name> role vsys webui objects decryption decryption-forwarding-profile <enable|read-only|disable> set shared admin-role <name> role vsys webui device policy-recommendation <enable|read-only|disable> set shared admin-role <name> role vsys restapi objects decryption-forwarding-profiles <enable|read-only|disable> set shared user-id-hub <value>
set shared icd set shared icd cloud-addr set shared icd cloud-addr address<value> set shared icd cloud-addr port <80-65535>
set vsys<name> ssl-tls-service-profile <name> protocol-settings max-version <tls1-0|tls1-1|tls1-2|tls1-3|max> set vsys <name> ssl-tls-service-profile <name> protocol-settings enc-algo-chacha20-poly1305 <yes|no> set vsys <name> ipuser-include-exclude-list include-exclude-network-sequence set vsys <name> ipuser-include-exclude-list include-exclude-network-sequence include-exclude-network [ <include-exclude-network1> <include-exclude-network2>... ] set vsys <name> iptag-include-exclude-list include-exclude-network-sequence set vsys <name> iptag-include-exclude-list include-exclude-network-sequence include-exclude-network [ <include-exclude-network1> <include-exclude-network2>... ]
set vsys<name> captive-portal ntlm-auth set vsys <name> captive-portal ntlm-auth attempts <1-10> set vsys <name> captive-portal ntlm-auth timeout <1-60> set vsys <name> captive-portal ntlm-auth reversion-time <60-3600> set vsys <name> user-id-collector setting enable-ntlm <yes|no> set vsys <name> user-id-collector setting ntlm-domain <value> set vsys <name> user-id-collector setting ntlm-username <value> set vsys <name> user-id-collector setting ntlm-password <value>
set vsys<name> global-protect global-protect-gateway <name> roles <name> inactivity-logout set vsys <name> global-protect global-protect-gateway <name> roles <name> inactivity-logout minutes <120-43200> set vsys <name> global-protect global-protect-gateway <name> roles <name> inactivity-logout hours <2-720> set vsys <name> global-protect global-protect-gateway <name> roles <name> inactivity-logout days <1-30> set vsys <name> global-protect global-protect-gateway <name> roles <name> disconnect-on-idle set vsys <name> global-protect global-protect-gateway <name> roles <name> disconnect-on-idle minutes <5-43200> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version within versions <1-65535> set vsys <name> profiles hip-objects <name> anti-malware criteria product-version not-within versions <1-65535> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode static-ip ip-address <name> probe-interval <1-3600> set vsys <name> profiles sdwan-saas-quality <name> monitor-mode http-https probe-interval <1-3600> set vsys <name> profiles sdwan-error-correction <name> mode packet-duplication transmit-hold-timer-pd <1-5000>
set vsys<name> profiles forwarding <name> description <value> set vsys <name> profiles forwarding <name> interface-primary <value> set vsys <name> profiles forwarding <name> interface-secondary <value> set vsys <name> profiles forwarding <name> transparent set vsys <name> profiles forwarding <name> transparent enable-ipv6 <yes|no> set vsys <name> profiles forwarding <name> routed set vsys <name> profiles forwarding <name> routed security-chain set vsys <name> profiles forwarding <name> routed security-chain <name> set vsys <name> profiles forwarding <name> routed security-chain <name> enable <yes|no> set vsys <name> profiles forwarding <name> routed security-chain <name> first-device <ip/netmask> set vsys <name> profiles forwarding <name> routed security-chain <name> first-device-description <value> set vsys <name> profiles forwarding <name> routed security-chain <name> last-device <ip/netmask> set vsys <name> profiles forwarding <name> routed security-chain <name> last-device-description <value> set vsys <name> profiles forwarding <name> routed distribution <round-robin|ip-modulo|ip-hash|lowest-latency> set vsys <name> profiles forwarding <name> health-check failure-action <bypass|block> set vsys <name> profiles forwarding <name> health-check failure-condition <any|all> set vsys <name> profiles forwarding <name> health-check path-enable <yes|no> set vsys <name> profiles forwarding <name> health-check path-interval-s <1-60> set vsys <name> profiles forwarding <name> health-check path-recovery-hold-s <0-65535> set vsys <name> profiles forwarding <name> health-check http-enable <yes|no> set vsys <name> profiles forwarding <name> health-check http-count <1-10> set vsys <name> profiles forwarding <name> health-check http-interval-s <1-60> set vsys <name> profiles forwarding <name> health-check http-latency-enable <yes|no> set vsys <name> profiles forwarding <name> health-check http-latency-maximum-ms <10-65535> set vsys <name> profiles forwarding <name> health-check http-latency-duration-s <1-65535> set vsys <name> profiles forwarding <name> health-check http-latency-log-exceeded <yes|no>
set vsys<name> service <name> protocol tcp port <value> set vsys <name> service <name> protocol tcp source-port <value> set vsys <name> service <name> protocol udp port <value> set vsys <name> service <name> protocol udp source-port <value>
set vsys<name> reports <name> type decryption group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|vsys_name|device_name|tls_version|tls_keyxchg|tls_enc|tls_auth|ec_curve|err_index|root_status|proxy_type|policy_name|cn|issuer_cn|root_cn|sni|error|src_dag|dst_dag|src_edl|dst_edl|container_id|pod_namespace|pod_name|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time> set vsys <name> reports <name> type desum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|srcuser|dstuser|vsys|tls_version|tls_keyxchg|tls_enc|tls_auth|policy_name|sni|error|err_index|src_edl|dst_edl|container_id|pod_namespace|pod_name|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|outbound_if|inbound_if|rule|dport|sport|proto> set vsys <name> reports <name> type threat group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|vsys_name|device_name|parent_session_id|parent_start_time|threatid|category|severity|direction|http_method|nssai_sst|http2_connection|xff_ip|threat_name|src_edl|dst_edl|dynusergroup_name|hostid|partial_hash|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|misc|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|pbf-s2c|pbf-c2s|flag-nat|flag-pcap|subtype|transaction|captive-portal|flag-proxy|non-std-dport|tunnelid|monitortag|users|category-of-threatid|threat-type> set vsys <name> reports <name> type data group-by <action|app|category-of-app|direction|dport|dst|dstuser|from|inbound_if|misc|natdport|natdst|natsport|natsrc|outbound_if|proto|risk-of-app|rule|rule_uuid|severity|sport|src|srcuser|subcategory-of-app|subtype|technology-of-app|container-of-app|threatid|to|dstloc|srcloc|vsys|quarter-hour-of-receive_time|hour-of-receive_time|day-of-receive_time|vsys_name|device_name|data-type|filename|tunnelid|monitortag|parent_session_id|parent_start_time|http2_connection|tunnel|xff_ip|src_dag|dst_dag>
set vsys<name> reports <name> type data values [ <values1> <values2>... ] set vsys <name> reports <name> type data labels [ <labels1> <labels2>... ] set vsys <name> reports <name> type data sortby <repeatcnt|nunique-of-users> set vsys <name> reports <name> type data set vsys <name> reports <name> type data aggregate-by [ <aggregate-by1> <aggregate-by2>... ]
set vsys<name> reports <name> type thsum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|rule|threatid|srcuser|dstuser|srcloc|dstloc|xff_ip|vsys|from|to|dport|action|severity|inbound_if|outbound_if|category|parent_session_id|parent_start_time|tunnel|direction|assoc_id|ppid|http2_connection|rule_uuid|threat_name|src_edl|dst_edl|hostid|dynusergroup_name|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|subtype|tunnelid|monitortag|category-of-threatid|threat-type> set vsys <name> reports <name> type traffic group-by <serial|time_generated|src|dst|natsrc|natdst|rule|srcuser|dstuser|srcloc|dstloc|app|vsys|from|to|inbound_if|outbound_if|sport|dport|natsport|natdport|proto|action|tunnel|rule_uuid|s_encrypted|vsys_name|device_name|parent_session_id|parent_start_time|category|session_end_reason|action_source|nssai_sst|nssai_sd|http2_connection|xff_ip|dynusergroup_name|src_edl|dst_edl|hostid|session_owner|policy_id|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|pbf-s2c|pbf-c2s|decrypt-mirror|threat-type|flag-nat|flag-pcap|captive-portal|flag-proxy|non-std-dport|transaction|sym-return|sessionid|sesscache_l7_done|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|tunnelid|monitortag> set vsys <name> reports <name> type urlsum group-by <serial|time_generated|vsys_name|device_name|app|category|src|dst|rule|srcuser|dstuser|srcloc|dstloc|vsys|from|to|dev_serial|inbound_if|outbound_if|dport|action|tunnel|url_domain|user_agent|http_method|http2_connection|parent_session_id|parent_start_time|rule_uuid|xff_ip|src_edl|dst_edl|hostid|dynusergroup_name|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|url_category_list|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|nunique-of-users|tunnelid|monitortag|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app> set vsys <name> reports <name> type trsum group-by <serial|time_generated|vsys_name|device_name|app|src|dst|xff_ip|rule|srcuser|dstuser|srcloc|dstloc|category|vsys|from|to|sessions|dport|action|tunnel|inbound_if|outbound_if|parent_session_id|parent_start_time|assoc_id|http2_connection|rule_uuid|src_edl|dst_edl|dynusergroup_name|s_decrypted|s_encrypted|hostid|nssai_sst|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|dst_category|dst_profile|dst_model|dst_vendor|dst_osfamily|dst_osversion|dst_host|dst_mac|container_id|pod_namespace|pod_name|src_dag|dst_dag|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|subcategory-of-app|category-of-app|technology-of-app|risk-of-app|container-of-app|tunnelid|monitortag|standard-ports-of-app|ncontent>
set vsys<name> reports <name> type auth group-by <serial|time_generated|vsys_name|device_name|vsys|ip|user|normalize_user|object|authpolicy|authid|vendor|clienttype|event|factorno|authproto|rule_uuid|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|serverprofile|desc|src_category|src_profile|src_model|src_vendor|src_osfamily|src_osversion|src_host|src_mac> set vsys <name> reports <name> type hipmatch group-by <serial|time_generated|vsys_name|device_name|srcuser|vsys|machinename|src|matchname|os|matchtype|srcipv6|hostid|devcategory|profile|model|vendor|osfamily|osversion|mac|devhost|source|day-of-receive_time|hour-of-receive_time|quarter-hour-of-receive_time|hostname|osfamily|osversion> set vsys <name> reports <name> type hipmatch last-match-by <time_generated> set vsys <name> rulebase decryption rules <name> action <no-decrypt|decrypt|decrypt-and-forward> set vsys <name> rulebase decryption rules <name> forwarding-profile <value>