
114
SBC session border controllers
whitelist
subnet
<WHITEIP>
subnet in CIDR
AAA.BBB.CCC.DDD/FF
notation
Add a subnet to the list of addresses banned for
automatic blocking and remove addresses and subnets
included in the added subnet
4.2.7.5
Static firewall parameters configuration mode
To enter this mode, execute
firewall static
command in the configuration mode.
SBC-[CONFIG]> firewall static
Entering static firewall mode
SBC-[CONFIG]-[FIREWALL]>
Command
Parameter
Value
Action
?
Show the list of available commands.
add profile
<PROF_NAME>
you may use letters,
numbers, '_'
character, 63
characters max.
Add firewall profile
add rule default
<direction>
<ENABLE>
<RULE_NAME>
<S_IP>
<S_MASK>
<R_IP>
<R_MASK>
<PROTO>
<S_PORT_START>
<S_PORT_END>
<D_PORT_START>
<D_PORT_END>
<ICMP_TYPE>
input
output
enable/disable
Text, 63 characters
max.
AAA.BBB.CCC.DDD
AAA.BBB.CCC.DDD
AAA.BBB.CCC.DDD
AAA.BBB.CCC.DDD
any
tcp
udp
icmp
tcp+udp
1-65535
1-65535
1-65535
1-65535
none
any
echo-reply
destination-
unreachable
network-unreachable
host-unreachable
protocol-unreachable
port-unreachable
fragmentation-needed
source-route-failed
network-unknown
host-unknown
network-prohibited
host-prohibited
TOS-network-
unreachable TOS-
host-unreachable
communication-
prohibited
Add firewall rule
Rule direction
Enable/disable rule
Rule name
Source IP address
Source subnet mask
Destination IP address
Destination subnet mask
Protocol type
Source starting port
Source ending port
Destination starting port
Destination ending port
ICMP packet type