27-10
C
HAPTER
27: P
ACKET
F
ILTERS
Adding Filters to the
Managed List
The
add filter
command verifies filter syntax prior to adding the filter to the
managed list. If the syntax is valid, no message is generated and the command
prompt returns. If syntax errors exist, error messages are generated detailing the
cause of the errors.
If the syntax is invalid, the filter is still added to the managed list with a status of
verify failed. To correct filter file errors, you must make the changes to the original
filter file using a text editor and re-TFTP the file to flash memory. You must then
use the
verify filter
command to check the filter file syntax. For more information
about the
verify filter
command refer to the
verify filter
command write-up.
Use the
add filter
command to add a filter file to the list of managed filters.
It may be helpful to use the
list filters
command to see a list of filter files
successfully stored in flash memory.
Removing a Filter from
an Interface
set interface
<interface_name>
input_filter““
output_filter””
Use this command to remove a filter that is assigned to an interface.
The
““
value represents a null value and removes the defined filter from the
interface. For example, to remove an output filter from an interface named eth:1,
you would use this command:
set interface eth:1 output_filter ““
Deleting a Packet Filter
delete filter
<filter_name>
Use this command to remove a filter from the filter list.
delete file <file_name>
Use this command to delete a filter file permanently from flash memory.
Verifying Filter File
Syntax
The
verify filter
command is useful if you make changes to a filter file that has
already been added to the managed list and re-TFTP the file back into FLASH
memory (using the same file name).
This command checks the filter file syntax, compiles it and if valid, generates no
message, returning you to the command prompt. If invalid the OfficeConnect
Gateway generates error messages.
Although filter file changes take effect on an interface immediately after you issue
the
set interface
command, you must
set interface
after verification to apply the
new filter rules to that interface.
For example, to verify a filter file named no_spam.flt you would enter the
following:
verify filter no_spam.flt
Summary of Contents for OfficeConnect 3C100XF
Page 1: ...http www 3com com OfficeConnect Gateway CLI User s Guide Release 1 0 Part No 10042302 Rev AA ...
Page 14: ...xiv ...
Page 18: ...iv ABOUT THIS GUIDE ...
Page 30: ...1 12 CHAPTER 1 USING THE COMMAND LINE INTERFACE CLI ...
Page 50: ...3 14 CHAPTER 3 ADMINISTRATIVE CLI COMMANDS ...
Page 58: ...4 8 CHAPTER 4 CONFIGURING AND MANAGING USERS ...
Page 70: ...6 8 CHAPTER 6 BRIDGING COMMANDS ...
Page 78: ...8 4 CHAPTER 8 INTERFACE COMMANDS ...
Page 82: ...9 4 CHAPTER 9 ARP COMMANDS ...
Page 88: ...11 4 CHAPTER 11 DHCP COMMANDS ...
Page 124: ...12 36 CHAPTER 12 IP ROUTING COMMANDS ...
Page 134: ...13 10 CHAPTER 13 DNS COMMANDS ...
Page 142: ...15 6 CHAPTER 15 MULTICASTING AND IGMP COMMANDS ...
Page 160: ...17 8 CHAPTER 17 PPP COMMANDS ...
Page 182: ...21 6 CHAPTER 21 ADDRESS TRANSLATION COMMANDS ...
Page 186: ...22 4 CHAPTER 22 IPSEC COMMANDS ...
Page 188: ...23 2 CHAPTER 23 SECURITY ASSOCIATION SA COMMANDS ...
Page 192: ...24 4 CHAPTER 24 TCP COMMANDS ...
Page 204: ...25 12 CHAPTER 25 SNMP COMMANDS ...
Page 210: ...26 6 CHAPTER 26 IP FILTERS COMMANDS ...
Page 238: ...29 6 CHAPTER 29 TRACEROUTE COMMANDS ...
Page 255: ...xv RFC 1483 16 3 RFC 1483 MER 16 4 ...
Page 256: ...xvi ...
Page 260: ......