Dell PowerConnect J-EX4200-24T Software Manual page 2853

J series; j-ex series
Table of Contents

Advertisement

In each firewall filter term, specify the match conditions to use to match components
5.
of a packet.
To specify match conditions to match on packets that contain a specific
source-address and source-port—for example:
[edit firewall family ethernet-switching filter ingress-port-filter term
term-one]
user@switch# set from source-address 192.0.2.14
user@switch# set from source-port 80
You can specify one or more match conditions in a single
to occur, the packet must match all the conditions in the term.
The
from
statement is optional, but if included in a term, the
be empty. If you omit the
In each firewall filter term, specify the actions to take if the packet matches all the
6.
conditions in that term.
You can specify an action and/or action modifiers:
To specify a filter action, for example, to discard packets that match the conditions
of the filter term:
[edit firewall family ethernet-switching filter ingress-port-filter term
term-one]
user@switch# set then discard
You can specify no more than one action (
filter term.
To specify action modifiers, for example, to count and classify packets in a forwarding
class:
[edit firewall family ethernet-switching filter ingress-port-filter term
term-one]
user@switch# set then count counter-one
user@switch# set then forwarding-class expedited-forwarding
You can specify any of the following action modifiers in a
analyzer analyzer-name
that is connected to a protocol analyzer application. An
configured under the
Port Mirroring to Analyze Traffic (CLI Procedure)" on page 3260.
count counter-name
NOTE: We recommend that you configure a counter for each term in
a firewall filter, so that you can monitor the number of packets that
match the conditions specified in each filter term.
forwarding-class class
statement, all packets are considered to match.
from
accept
—Mirror port traffic to a specified destination port or VLAN
family address type. See "Configuring
ethernet-switching
—Count the number of packets that pass this filter term.
—Classify packets in a forwarding class.
Chapter 102: Configuring Firewall Filters
statement. For a match
from
from
statement cannot
,
, or
discard
routing-instance
statement:
then
analyzer
must be
) per
2781

Advertisement

Table of Contents
loading

Table of Contents