Configuring Classification Rules
Configuring Classification Rules
Purpose
To review, create, assign, and unassign classification rules to policy profiles. This maps user
profiles to protocol-based frame filtering policies.
Commands
For information about...
show policy rule
show policy capability
set policy rule
clear policy rule
clear policy all-rules
show policy rule
Use this command to display policy classification rule information.
Syntax
show policy rule [all | admin-profile | profile-index] [ether | ipproto |
ipdestsocket | ipsourcesocket | iptos | macdest | macsource | tcpdestport |
tcpsourceport | udpdestport | udpsourceport] [data] [mask mask] [port-string port-
string] [rule-status {active | not-in-service | not-ready}] [storage-type {non-
volatile | volatile}] [vlan vlan] | [drop | forward] [dynamic-pid dynamic-pid]
[cos cos] [admin-pid admin-pid] [-verbose] [usage-list] [display-if-used]
Parameters
all | admin-
profile | profile-
index
ether
ipproto
ipdestsocket
ipsourcesocket
iptos
macdest
macsource
tcpdestport
15-6 Policy Classification Configuration
Note: A4, B3, B5, C3, C5, and G3 devices support profile-based CoS traffic rate limiting but do not
support rule-based rate limiting.
Displays policy classification rules for all profiles, the admin-profile, or for
a specific profile index number. Valid values are 1 - 1023.
Displays Ethernet type II rules.
Displays IP protocol field in IP packet rules.
Displays IP destination address rules.
Displays IP source address rules.
Displays Type of Service rules.
Displays MAC destination address rules.
Displays MAC source address rules.
Displays TCP destination port rules.
Refer to page...
15-6
15-8
15-10
15-13
15-14