Security Firewall Tcp-Strict - Brocade Communications Systems 5600 vRouter Configuration Manual

Hide thumbs Also See for 5600 vRouter:
Table of Contents

Advertisement

security firewall tcp-strict

Configures global TCP strict stateful firewall rule.
Syntax
set security firewall tcp-strict
delete security firewall tcp-strict
show security firewall tcp-strict
Command Default
If this statement is not configured, the firewall is stateless. In this case, specific rules governing statefulness can be configured
within the rule set.
Parameters
tcp-strict
Enables the TCP strict stateful firewall rule
Modes
Configuration mode
Configuration Statement
security {
firewall {
tcp-strict
}
}
Usage Guidelines
Use the set form of this command to enable TCP strict tracking of stateful firewall rules for traffic associated with established
connections, traffic related to established connections, and invalid traffic. This command enables the user to toggle between
loose or strict stateful behaviors for TCP. To do so, stateful tracking must be enabled through either a state rule or global rule.
When firewall is globally stateful, policies for established, related, and invalid traffic must be defined.
Use the delete form of this command to disable TCP strict tracking of stateful firewall rules for traffic associated with
established connections, traffic related to established connections, and invalid traffic.
Use the show form of this command to display the configuration of TCP strict tracking of stateful firewall rules for traffic
associated with established connections, traffic related to established connections, and invalid traffic.
Brocade 5600 vRouter Firewall Configuration Guide
53-1004253-01
Firewall Commands
83

Advertisement

Table of Contents
loading

Table of Contents