Alcatel-Lucent OmniAccess 700 CLI Command Reference Manual page 626

Release versions: 2.2; 2.2-r02; 2.3
Table of Contents

Advertisement

To Configure a Rule for a Filter:
[<1-65535>] match [any|all] <match-list name>...
{permit|deny [reset]}[log] [verbose] [timer <timer-object>]
The above command is used to configure rules (associate match-lists and set
priority for the rule) for a filter, and also set the action deny or permit for the
configured rules.
default {deny|permit}[log] [verbose]
This command sets an action of either permit or deny on the filter.
The default action for a filter is "deny".
Note:
The reset keyword can be used in conjunction only with the "deny" keyword.
1-65535
match <match-list name>
deny
permit
deny[reset]
log
verbose
timer-object
default {deny|permit}
OmniAccess 700 CLI Command Reference Guide
Beta
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
Parameter
Alcatel-Lucent
Description
Denotes the filter rule number. The
range for the filter rule.
This command forms a match-list of the
Common classifiers that are pre-
configured. In this type of match, the
relevant action is performed even if one
rule in the list is satisfied.
This command prohibits the traffic
through it.
This command allows traffic through it.
The filter has to be set to this mode to
enable it.
Keyword "deny reset" sends TCP RST to
the source, for TCP traffic that matches
the classification, and drops packets for
other non-TCP traffic.
Logs the first packet of a session.
Logs all packets of a session.
The name of the time range.
If no match cases are given, this default
keyword is used to just configure a
permit or deny on all the incoming traffic.
Beta
ip filter
593

Advertisement

Table of Contents
loading

Table of Contents