Using Condition Groups In Policies; Acls; Sample Group Configuration - Alcatel OmniSwitch 6600 Family Network Configuration Manual

Omniswitch 6600 series
Hide thumbs Also See for OmniSwitch 6600 Family:
Table of Contents

Advertisement

Using Condition Groups in Policies

Using Condition Groups in Policies
Condition groups are made up of multiple IP addresses, MAC addresses, services, or ports to which you
want to apply the same action or policy rule. Instead of creating a separate condition for each address, etc.,
create a condition group and associate the group with a condition. Groups are especially useful when
configuring filters, or Access Control Lists (ACLs); they reduce the number of conditions and rules that
must be entered. For information about setting up ACLs, see
Commands used for configuring condition groups include the following:
policy network group
policy service group
policy mac group
policy port group

ACLs

Access Control Lists (ACLs) typically use condition groups in policy conditions to reduce the number
of rules required to filter particular types of traffic. For more information about ACLs, see
"Configuring ACLs."

Sample Group Configuration

1
Create the group and group entries. In this example, a network group is created:
-> policy network group netgroup1 10.10.5.1 10.10.5.2
2
Attach the group to a policy condition. For more information about configuring conditions, see
ing Policy Conditions" on page
-> policy condition cond3 source network group netgroup1
Note. (Optional) Use the show policy network group command to display information about the network
group. Each type of condition group has a corresponding show command. For example:
-> show policy network group
Group Name:
Switch
+netgroup1
See the OmniSwitch CLI Reference Guide for more information about the output of this display. See
"Verifying Condition Group Configuration" on page 24-42
commands to display information about condition groups.
page 24-34
24-24.
From
Entries
blt
4.0.1.166
10.0.1.166
cli
10.10.5.1/255.255.255.0
10.10.5.2/255/255/255.0
OmniSwitch 6600 Family Network Configuration Guide
Chapter 25, "Configuring ACLs."
for more information about using show
Configuring QoS
Chapter 25,
"Creat-
April 2006

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents