profile‐index
ether
ipproto
ipdestsocket
ipsourcesocket
iptos
macdest
macsource
tcpdestport
tcpsourceport
udpdestport
udpsourceport
data
mask mask
vlan vlan
cos cos
drop | forward
Defaults
None.
Mode
Switch command, read‐write.
Specifies a policy profile number to which this rule will be assigned.
Policy profiles are configured with the set policy profile command as
described in "set policy profile" on page 11‐4. Valid profile‐index values
are 1‐ 255.
Specifies that the rule should apply to traffic with the specified type field
in Ethernet II packet.
Specifies that the rule should apply to traffic with the specified Protocol
field in IP packet.
Specifies that the rule should apply to traffic with the specified
destination IP address with optional post‐fixed port.
Specifies that the rule should apply to traffic with the specified source IP
address, with optional post‐fixed port.
Specifies that the rule should apply to traffic with the specified Type of
Service field in IP packet.
Specifies that the rule should apply to traffic with the specified MAC
destination address.
Specifies that the rule should apply to traffic with the specified MAC
source address.
Specifies that the rule should apply to traffic with the specified TCP
destination port.
Specifies that the rule should apply to traffic with the specified TCP
source port.
Specifies that the rule should apply to traffic with the specified UDP
destination port.
Specifies that the rule should apply to traffic with the specified UDP
source port.
Specifies the code for the specified traffic classifier (listed above). This
value is dependent on the classification type entered. Refer to Table
for valid values for each classification type.
(Optional) Specifies the number of significant bits to match, dependent on
the data value entered. Refer to Table
classification type and data value.
Specifies the action of the rule is to classify to a VLAN ID.
Specifies the action of the rule is to classify to a Class‐of‐Service ID. Valid
values are 0 ‐ 4095. A value of ‐1 indicates that no CoS forwarding
behavior modification is desired. (Not supported on B3, C3, and G3.)
Specifies that packets within this classification will be dropped or
forwarded.
11‐3 for valid values for each
SecureStack C3 Configuration Guide 11-11
set policy rule
11‐3
Need help?
Do you have a question about the SECURESTACK C3 and is the answer not in the manual?
Questions and answers