Telnet Command: Ipf Rule - Draytek Vigor2120n-plus User Manual

Broadband vigor2120 series
Hide thumbs Also See for Vigor2120n-plus:
Table of Contents

Advertisement

Session timeout
DrayTek Banner
---------------------------------------------------------------
Apply IP filter to VPN incoming packets
Accept large incoming fragmented UDP or ICMP packets: Enable
----------------------------------------------------------------
Strict Security Checking
[ ]APP Enforcement
>
T
e
l
n
e
t
C
o
m
m
a
n
d
T
e
l
n
e
t
C
o
m
m
a
n
d
This command is used to set filter rule for firewall.
ipf rule s r [-<command> <parameter> | ...
ipf rule s r -v
S
y
n
t
a
x
D
e
S
y
n
t
a
x
D
e
Parameter
s
r
<Command><parameter
>
-e
-s o:g <obj>
–s u <Address Type>
<Start IP Address> <End
IP Address> | <Address
Mask>
:
i
p
f
r
u
l
e
:
i
p
f
r
u
l
e
s
c
r
i
p
t
i
o
n
s
c
r
i
p
t
i
o
n
Description
Such word means Filter Set, range form 1~12.
Such word means Filter Rule, range from 1~7.
The following lists all of the available commands with
parameters.
It means to enable or disable the rule setting.
0- disable
1- enable
It means to specify source IP object and IP group.
o - indicates "object".
g - indicates "group".
obj - indicates index number of object or index number of
group. Available settings range from 1-192. For example, "-s
g 3" means the third source IP group profile.
It means to configure source IP address including address
type, start IP address, end IP address and address mask.
u – It means "user defined".
Address Type - Type the number (representing different
address type).
0 - Subnet Address
1 - Single Address
2 - Any Address
3 - Range Address
Example:
Set Subnet Address => -s u 0 192.168.1.10 255.255.255.0
Set Single Address => -s u 1 192.168.1.10
Set Any Address => -s u 2
Set Range Address => -s u 3 192.168.1.10 192.168.1.15
: 1440
: Enable
435
: Enable
Vigor2120 Series User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vigor2120

Table of Contents