Configuring Classification Rules
11-6
Policy Classification Configuration
Configuring Classification Rules
Purpose
To
review,
create,
assign,
and
unassign
classification
rules
to
policy
profiles.
This
maps
user
profiles
to
protocol
‐
based
frame
filtering
policies.
Commands
show policy rule
Use
this
command
to
display
policy
classification
rule
information.
Syntax
show policy rule
[
all
|
admin-profile
|
profile-index
] [
ether
|
ipproto
|
ipdestsocket
|
ipsourcesocket
|
iptos
|
macdest
|
macsource
|
tcpdestport
|
tcpsourceport
|
udpdestport
|
udpsourceport
] [
data
] [
mask mask
] [
port-string
port-
string
] [
rule-status
{
active
|
not-in-service
|
not-ready
}] [
storage-type
{
non-
volatile
|
volatile
}] [
vlan
vlan
] | [
drop
|
forward
] [
dynamic-pid
dynamic-pid
]
[
cos
cos
] [
admin-pid
admin-pid
] [
-verbose
] [
usage-list
] [
display-if-used
]
Parameters
Note:
B3, C3, and G3 devices support profile-based CoS traffic rate limiting only. Policy rules
specifying CoS will only rate limit on D2, C2 and B2 devices, including when C2 and B2 devices are
configured on mixed stacks containing B3 and C3 devices.
For information about...
Refer to page...
show policy rule
11-6
show policy capability
11-8
set policy rule
11-10
clear policy rule
11-13
clear policy all-rules
11-14
all
|
admin
‐
profile
|
profile
‐
index
Displays
policy
classification
rules
for
all
profiles,
the
admin
‐
profile
,
or
for
a
specific
profile
index
number.
Valid
values
are
1
‐
1023
.
ether
Displays
Ethernet
type
II
rules.
ipproto
Displays
IP
protocol
field
in
IP
packet
rules.
ipdestsocket
Displays
IP
destination
address
rules.
ipsourcesocket
Displays
IP
source
address
rules.
iptos
Displays
Type
of
Service
rules.
macdest
Displays
MAC
destination
address
rules.
macsource
Displays
MAC
source
address
rules.
tcpdestport
Displays
TCP
destination
port
rules.
Summary of Contents for SECURESTACK C3
Page 2: ......
Page 34: ...xxxii...
Page 40: ...Getting Help xxxviii About This Guide...
Page 126: ...clear license 4 6 Activating Licensed Features...
Page 132: ...set port inlinepower 5 6 Configuring System Power and PoE...
Page 228: ...clear port protected name 7 60 Port Configuration...
Page 270: ...clear snmp interface 8 42 SNMP Configuration...
Page 396: ...clear port txq 12 10 Port Priority Configuration...
Page 414: ...ip igmp robustness 13 18 IGMP Configuration...
Page 542: ...clear arpinspection statistics 17 32 DHCP Snooping and Dynamic ARP Inspection...
Page 546: ...Enabling Router Configuration Modes 18 4 Preparing for Router Mode...
Page 640: ...traceroute ipv6 21 10 IPv6 Management...
Page 698: ...show ipv6 dhcp binding 24 20 DHCPv6 Configuration...
Page 746: ...show ipv6 ospf virtual link 25 48 OSPFv3 Configuration...
Page 834: ...ip access group 26 88 Authentication and Authorization Configuration...
Page 848: ...TACACS Configuration clear tacacs interface 27 14...
Page 866: ...sFlow Configuration show sflow agent 28 18...
Page 872: ...Index 4...