Policy (Firewall); Policy Add - Zte ZXR10 8900 Series Command Manual

10g routing switch
Hide thumbs Also See for ZXR10 8900 Series:
Table of Contents

Advertisement

Command
Function
Command Format
Parameter
Description
6
C h a p t e r

policy (firewall)

Table of Contents:

policy add.........................................................................69

policy modify ....................................................................71
policy delete .....................................................................73
policy add
This command is used to add one access control rule.
policy add action <accept|deny>[srcarea <string1>][dstarea
<string2>][srcvlan
<string5>][dst <string6>][service <string7>][schedule <str
ing8>][sport <string9>][orig_dst <string10>][ permanent
<on|off>][log
<on|off|
<number>]
Parameter
add
action
accept|deny
srcarea
<string1>
dstarea
<string2>
srcvlan
<string3>
Confidential and Proprietary Information of ZTE CORPORATION
<string3>][dstvlan
alarm>][enable<yes|no>][before
Description
This adds one FW access control rule.
This sets access privilege, that is to permit
or deny packets matching this rule to pass
through FW.
permit/deny
This sets source area.
This is one string. It must be one or more
preset area name(s). As for multiple area
names, space is used between each two area
names and all addresses are quoted with
single quotes, such as 'area_gei_5/1'.
This sets destination area.
This is one string. It must be one or more
preset area name(s). As for multiple area
names, space is used between each two area
names and all addresses are quoted with
single quotes, such as 'area_gei_5/1'.
This sets source VLAN.
This is one string, indicating preset vlan
number.
<string4>][src
69

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents