12-18
C
HAPTER
12: C
REATING
AND
U
SING
P
ACKET
F
ILTERS
The maximum length of a packet filter definition is 4096 bytes.
The editor assumes a terminal capability no higher than a glass tty (that is, it
does not assume an addressable screen). You can place any ASCII printable
character into the editing buffer at the cursor position. If a character
exceeds the maximum line length, the character is discarded and a bell
sounds. The editor initially operates in
insert
mode. The commands
supported by the editor are summarized in Table 12-6.
To use the built-in line editor to create a packet filter definition:
1
From the top level of the Administration Console, enter:
bridge packetFilter create
The packet filter line editor appears.
2
Enter the definition for the packet filter. See the command in Table 12-6.
3
Save the packet filter by pressing Ctrl+W.
The syntax of the filter definition is checked. If any errors are detected, the
errors are displayed and the editor is re-entered at the line containing the
first error. After correcting the errors, attempt to save the packet filter again.
After you have corrected all errors and successfully saved the packet filter, it
is converted to internal form and stored on the system.
Top-Level Menu
system
ethernet
fddi
➧
bridge
ip
snmp
analyzer
script
logout
display
ipFragmentation
ipxSnapTranslation
addressThreshold
agingTime
stpState
stpPriority
stpMaxAge
stpHelloTime
stpForwardDelay
stpGroupAddress
port
➧
packetFilter
list
display
➧
create
delete
edit
load
assign
unassign
addressGroup
portGroup
Summary of Contents for SUPERSTACK 2200
Page 41: ......
Page 75: ......
Page 173: ...13 12 CHAPTER 13 CONFIGURING ADDRESS AND PORT GROUPS TO USE IN PACKET FILTERS ...