Policy - Alcatel-Lucent OmniAccess 700 CLI Command Reference Manual

Release versions: 2.2; 2.2-r02; 2.3
Table of Contents

Advertisement

Left running head:
Chapter name (automatic)
Filter and Firewall

POLICY

policy <name>
D
ESCRIPTION
Enter this command in the Firewall Configuration mode. This command is used to
configure a firewall policy. This enters the firewall policy sub-configuration mode
P
ARAMETERS
name
E
XAMPLE
The following example depicts firewall policy configuration:
ALU(config-firewall)# policy P1
ALU(config-firewall-P1)#
To Create a DoS Rule Inside a Firewall Policy
[<1-65535>] match [any|all] <match-list name>... attack
<name> {drop|reset} [time-range <name>]
Enter this command in the Firewall Policy Configuration mode. This command is
used to attach an attack object to a firewall policy.
1-65535
match-list name
attack <name>
drop
reset
time-range <name>
In the following example, the attack object atk is configured to drop all the attacks:
ALU(config-firewall-P1)# match m1 attack atk drop
In the following example, the attack object atk is configured to drop all the attacks
and send acknowledgement such as an error report.
ALU(config-firewall-P1)# match m1 attack atk reset
616
Beta
Parameter
Parameter
Alcatel-Lucent
Description
Name of the firewall policy to be configured.
Description
Denotes the firewall policy rule number.
The range for the filter rule.
Name of the match-list.
Name of the attack.
The keyword "drop" drops the packets.
The keyword "reset" drops the packets
but sends an error message or an
acknowledgement to the sender.
The name of the time range.
OmniAccess 700 CLI Command Reference Guide
Beta

Advertisement

Table of Contents
loading

Table of Contents