Policy Classification Configuration Command Set
Assigning Classification Rules to Policy Profiles
tcpportsource
tcpportdest
macsource
macdest
ipfrag
port
class-data-val
class-data-mask
Command Defaults
•
Command Type
Switch command.
Command Mode
Read-Write.
Examples
This example shows how to use
policy 2, classification 65, to drop packets from a source IP address of 172.16.1.2:
Matrix(rw)->set policy classify 2 65 vlan drop ipsource 172.16.1.2
8-30 Matrix NSA Series Configuration Guide
TCP port source - (0 - 65535)
TCP port destination - (0 - 65535)
Classifies based on MAC source address.
Classifies based on MAC destination address.
Classifies based on IP fragmentation value.
Classifies based on port-string.
Data Value of meaning
Number of mask bits to apply to Data Value
If mask is not specified, all data bits will be considered relevant.
Table 8-3
to create (and enable) a VLAN classification rule to