Configuring Classification Rules
Configuring Classification Rules
Purpose
To review, create, assign, and unassign classification rules to policy profiles. This maps user
profiles to protocol‐based frame filtering policies.
Commands
For information about...
show policy rule
show policy capability
set policy rule
clear policy rule
clear policy all-rules
show policy rule
Use this command to display policy classification rule information.
Syntax
show policy rule [all | admin-profile | profile-index] [ether | icmptype | ipproto
| ipdestsocket | ipsourcesocket | iptos | macdest | macsource | tcpdestport |
tcpsourceport | udpdestport | udpsourceport] [data] [mask mask] [port-string port-
string] [rule-status {active | not-in-service | not-ready}] [storage-type {non-
volatile | volatile}] [vlan vlan] | [drop | forward] [dynamic-pid dynamic-pid]
[cos cos] [admin-pid admin-pid] [-verbose] [usage-list] [display-if-used]
Parameters
all | admin‐
profile | profile‐
index
ether
icmptype
ipproto
ipdestsocket
ipsourcesocket
iptos
macdest
macsource
11-6 Policy Classification Configuration
Note: B3, C3, and G3 devices support profile-based CoS traffic rate limiting only. Policy rules
specifying CoS will not rate limit on these devices, or on mixed stacks including B3 or C3 devices.
Displays policy classification rules for all profiles, profile ID 0 (admin‐
profile), or for a specific profile index number. Valid values are 1 ‐ 1023.
Displays Ethernet type II rules.
Displays ICMP type rules.
Displays IP protocol field in IP packet rules.
Displays IP destination address rules.
Displays IP source address rules.
Displays Type of Service rules.
Displays MAC destination address rules.
Displays MAC source address rules.
Refer to page...
11-6
11-8
11-10
11-12
11-14