HP ProCurve 7102dl Reference Manual page 434

Secure router sros command line interface
Table of Contents

Advertisement

SROS Command Line Interface Reference Guide
ip policy-class <policyname> rpf-check
Use the ip policy-class rpf-check command to verify that traffic has entered on the appropriate interface
using a route lookup. Reverse Path Forwarding (RPF) is essentially a spoofing check. For more details on
IP policy class functionality in SROS, refer to ip policy-class <policyname> on page 426. Use the no form
of this command to disable this feature.
Syntax Description
<policyname>
rpf-check
Default Values
This command is enabled by default.
Functional Notes
The rpf-check feature should be disabled if your application allows incoming traffic on policy classes that
do not match the route table's source destination specifications. This feature can be disabled on a per pol-
icy class basis by issuing the command in conjunction with the policy class name you do not want to be
checked.
Usage Examples
The following example turns off the rpf-check feature for the Private policy class:
ProCurve(config)#no ip policy-class Private rpf-check
5991-2114
Identifies the configured access policy using an alphanumeric descriptor
(maximum of 255 characters). All access policy descriptors are
case-sensitive.
Enables RPF check (spoofing).
© Copyright 2007 Hewlett-Packard Development Company, L.P.
Global Configuration Mode Command Set
432

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve secure router 7203dl j8753a j8753a

Table of Contents