Firewall Policy {In|Out; Icmp-Block-Trace-Route - Alcatel-Lucent OmniAccess 700 CLI Command Reference Manual

Release versions: 2.2; 2.2-r02; 2.3
Table of Contents

Advertisement

FIREWALL POLICY
firewall policy {in|out} <policy-name>
D
ESCRIPTION
This command is used to attach a firewall policy to an interface in 'in' or 'out'
direction. Firewall policy is applied to the ingress (incoming) traffic if "in" keyword
is used. Firewall policy is applied to the egress (outgoing) traffic if "out" keyword is
used.
Note:
Firewall policy will not take effect until it is bound to an interface.
P
ARAMETERS
Parameter
in
out
policy-name
D
V
EFAULT
ALUE
No default parameters.
E
XAMPLE
ALU(config)# interface GigabitEthernet7/0
ALU(config-if GigabitEthernet7/0)# firewall policy in P1
-
-
ICMP
BLOCK
TRACE

icmp-block-trace-route

D
ESCRIPTION
This command is not a default attack setting. The square brackets around the
whole command denotes that its optional. This implies that it is not set for
protection by default on the OA-700, but you can turn it on by explicitly adding the
above command in the user-defined attack prevention list.
P
ARAMETERS
None.
E
XAMPLE
ALU(config-firewall-attack-A1)# icmp-block-trace-route
OmniAccess 700 CLI Command Reference Guide
Beta
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
{
|
}
IN
OUT
Firewall policy is attached to the ingress traffic.
Firewall policy is attached to the egress traffic.
Name of the firewall policy.
-
ROUTE
Alcatel-Lucent

firewall policy {in|out}

Description
Beta
605

Advertisement

Table of Contents
loading

Table of Contents