Herunterladen Diese Seite drucken

14Packet-Filter L2 Commit; 16Packet-Filter L2 Fcs-Validation; 17Packet-Filter L2 Rule Add - Belden HIRSCHMANN EAGLE40-07 Referenzhandbuch

Grafische benutzeroberfläche; anwender-handbuch konfiguration
Vorschau ausblenden Andere Handbücher für HIRSCHMANN EAGLE40-07:

Werbung

Parameter Value
1..2048
P-3
3 1 .1 .1 4 pa c k e t -filt e r l2 c om m it
Writes all changes made in the L2 firewall configuration to the device
Mode: Global Config Mode
Privilege Level: Operator
Format: packet-filter l2 commit
3 1 .1 .1 5 pa c k e t -filt e r l2 de fa ult polic y
Sets the default policy of the L2 rule tables.
Mode: Global Config Mode
Privilege Level: Operator
Format: packet-filter l2 defaultpolicy <P-1>
Parameter Value
accept
P-1
drop
3 1 .1 .1 6 pa c k e t -filt e r l2 fc s-va lida t ion
Activates/Deactivates FCS validation
Mode: Global Config Mode
Privilege Level: Operator
Format: packet-filter l2 fcs-validation <P-1>
Parameter Value
enable
P-1
disable
3 1 .1 .1 7 pa c k e t -filt e r l2 rule a dd
Adds a rule to the L2 firewall table.
Mode: Global Config Mode
Privilege Level: Operator
Format: packet-filter l2 rule add <P-1> action <P-2> [src-mac <P-3>] [dst-mac <P-
4>] [src-ip <P-5>] [sourceport <P-6>] [dest-ip <P-7>] [destport <P-8>] [ethertype
<P-9>] [proto <P-10>] [vlan <P-11>] [description <P-12>] [rate-limit <P-13> <P-
14> <P-15>] [tos <P-16>] [log <P-17>] [trap <P-18>]
action: Set Action
[src-mac]: Specify the source MAC address.
[dst-mac]: Specify the destination MAC address.
[src-ip]: Specify the source IP address/mask.
[sourceport]: Specify the source L4 port.
[dest-ip]: Specify the destination IP address/mask.
[destport]: Specify the destination L4 port.
[ethertype]: Specify the Ethertype.
[proto]: Specify the protocol for L2 firewall rule.
[vlan]: Specify the VLAN ID for L2 firewall rule.
[description]: Rule description/name for the L2 firewall rule.
[rate-limit]: Specify the rate limit and burst size.
[tos]: Specify TOS for L2 rule.
[log]: Set logging.
[trap]: Set sending SNMP traps.
Parameter Value
1..999
P-1
accept
P-2
drop
any
P-3
aa:bb:cc:dd:ee:ff
any
P-4
aa:bb:cc:dd:ee:ff
string
P-5
any
P-6
string
string
string
string
120
Meaning
Rule index
Meaning
Accept packets.
Drop packets without notification.
Meaning
Enable the option.
Disable the option.
Meaning
Rule index
Accept packets.
Drop packets without notification.
Enter any as a shortcut for the MAC address 00:00:00:00:00:00.
Enter the MAC address in hexadecimal format.
Enter any as a shortcut for the MAC address 00:00:00:00:00:00.
Enter the MAC address in hexadecimal format.
Source IP address/CIDR mask/'any'
any Any port/portless protocol
a-b Port Range
a,b Port List (may be longer than two ports)
a-b,c-d List of Port Ranges (may be longer than two ranges)
1 to 65535 Port Number
RM CLI EAGLE40-07
Release 04.1.01 05/2021

Werbung

Kapitel

loading