Draytek Vigor 3220 SERIES User Manual page 578

Table of Contents

Advertisement

Running: yes
Log Flags: 0x80947278 = nonip
Default: pass all, Logging: available
T
e
l
n
e
t
C
o
m
m
T
e
l
n
e
t
C
o
m
m
This command is used to set general rule for firewall.
ipf set [Options]
ipf set [SET_NO] rule [RULE_NO] [Options]
S
y
n
t
a
x
S
y
n
t
a
x
Parameter
Options
SET_NO
RULE_NO
-v
-c [SET_NO]
-d [SET_NO]
-l [VALUE]
- p [VALUE]
-R [v4/v6] [Enable/Disable]
-L [VALUE]
-C [VALUE]
-M [APPE_NO]
-U [URL_NO]
-W [WEB_NO]
-D[ DNS_NO]
566
a
n
d
:
i
p
f
s
e
t
a
n
d
:
i
p
f
s
e
t
D
e
s
c
r
i
p
t
i
o
n
D
e
s
c
r
i
p
t
i
o
n
Description
There are several options provided here, such as -v, -c [SET_NO], -d
[SET_NO],... and etc.
It means to specify the index number (from 1 to 12) of filter set.
It means to specify the index number (from 1 to 7) of filter rule set.
Type "-v" to view the configuration of general set.
It means to setup Call Filter, e.g., -c 2. The range for the index
number you can type is "0" to "12" (0 means "disable).
It means to setup Data Filter, e.g., -d 3. The range for the index
number you can type is "0" to "12" (0 means "disable).
It means to setup Log Flag, e.g., -l 2
Type "0" to disable the log flag.
Type "1" to display the log of passed packet.
Type "2" to display the log of blocked packet.
Type "3" to display the log of non-matching packet.
It means to setup actions for packet not matching any rule, e.g., -p
1
Type "0" to let all the packets pass;
Type "1" to block all the packets.
Accept routing packet from WAN., e.g.,
-R v4 0 : Set Accept routing packet from WAN by IPv4 is enable
-R v4 1 : Set Accept routing packet from WAN by IPv6 is disable
-R v6 0 : Set Accept routing packet from WAN by IPv4 is enable
-R v6 1 : Set Accept routing packet from WAN by IPv6 is disable
Enable/Disable Strict Security Firewall, e.g., -L 1.
0:Disable, 1:Enable
Setup the code page, e.g., -C 12.
Type 1 ~ 12 as the code page number. If "0" is set, the code page
setting is disabled.
It means to configure APPE for the packets not matching with any
rule, e.g., -M 1
Type "0" to let all the packets pass;
Type "1" to block all the packets.
It means to configure URL content filter for the packets not
matching with any rule, e.g., -U 1
Type "0" to let all the packets pass;
Type "1" to block all the packets.
Setup WEB Content Filter for packet not matching any rule.
Setup DNS Filter for packet not matching any rule.
Vigor2832 Series User's Guide

Advertisement

Table of Contents
loading

Table of Contents