Firewall Fragments-Inspect - H3C MSR 20-20 Command Reference Manual

Msr 20/30/50 series routers
Hide thumbs Also See for MSR 20-20:
Table of Contents

Advertisement

1994
C
130: P
HAPTER
ACKET
Description
Example

firewall fragments-inspect

Syntax
View
Parameter
Description
Related command:
Example
F
F
C
ILTER
IREWALL
ONFIGURATION
name acl-name: Specifies the Layer 2 ACL name, a case-insensitive string of 1 to
32 characters that must start with an English letter a to z or A to Z. To avoid
confusion, the word "all" cannot be used as the ACL name.
inbound: Filters packets in the inbound direction.
outbound: Filters packets in the outbound direction.
Use the
firewall ethernet-frame-filter
filtering.
Use the
undo firewall ethernet-frame-filter
Ethernet frame filtering.
Ethernet frame filtering is not performed by default.
# Configure Ethernet frame filtering rules on the inbound direction of interface
Ethernet 1/0.
<Sysname> system-view
[Sysname] bridge enable
[Sysname] bridge 1 enable
[Sysname] interface ethernet 1/0
[Sysname-Ethernet1/0] bridge-set 1
[Sysname-Etherhet1/0] firewall ethernet-frame-filter 4001 inbound
firewall fragments-inspect
undo firewall fragments-inspect
System view
None
Use the
firewall fragments-inspect
Use the
undo firewall fragments-inspect
inspection.
Be default, fragments inspection is disabled.
firewall fragments-inspect, and firewall packet-filter.
# Enable fragments inspection.
<Sysname> system-view
[Sysname] firewall fragments-inspect
C
OMMANDS
command to configure Ethernet frame
command to enable fragments inspection.
command to remove the
command to disable fragments

Advertisement

Table of Contents
loading

This manual is also suitable for:

Msr 20-21Msr 30-16Msr 30-20Msr 30-40Msr 30-60Msr 50 ... Show all

Table of Contents