ZXR10 8900 Series Command Manual (FW Volume)
Command
Function
Command Format
Parameter
Description
Example
Command
Function
Command Format
Parameter
Description
120
Confidential and Proprietary Information of ZTE CORPORATION
rule
This is about management of packet filtering rules.
rule set default action
This command is used to set default packet filtering rule.
rule set default action <accept|reject> log<yes|no>
Parameter
accept|reject
log
yes|no
To set default packet filtering rule to permit and not record it into
log, execute the following command:
# rule set default action accept log no
rule add action l2protocol ip
This command is used to add one IP packet filtering rule.
rule add action <accept|reject> l2protocol <ip|0800>[area
<string1>][log <yes|no>][smac <string2>][dmac <string3
>][l3protocol
<all|0|tcp|6|udp|17|icmp|1|igmp|2|number
>][sip <string4>][ dip <string5>][sport <number1>][dport
<number2>][ sport_end <number3>][ dport_end <number
4>]
Parameter
add
action
accept|reject
l2protocol
ip|0800
area
<string1>
log
yes|no
smac
Description
permit|deny
This specifies whether to record it in the log.
Yes|No
Description
This adds one packet filtering rule.
This is the action to packet meeting rules:
permit or deny.
permit|deny
This is the L2 protocol type used by packet.
IP Protocol
This specifies area resource.
This is one string, which must be one
predefined area resource.
This specifies whether to record it into log.
Yes|No
This sets source mac address.