Chapter 8: Using the Command Line Interface
529
<policy> is one of the options:
accept, drop or reject.
Option
Description
accept
Accepts traffic from all IP addresses.
drop
Discards traffic from all IP addresses, without
sending any failure notification to the source host.
reject
Discards traffic from all IP addresses, and an
ICMP message is sent to the source host for
failure notification.
Tip: You can combine both commands to modify all firewall control
parameters at a time. See
Multi-Command Syntax
(on page 617).
Managing Firewall Rules
You can add, delete or modify firewall rules using the CLI commands.
An IPv4 firewall control rule command begins with
security
ipAccessControl ipv4 rule.
An IPv6 firewall control rule command begins with
security
ipAccessControl ipv6 rule.
Adding a Firewall Rule
Depending on where you want to add a new firewall rule in the list, the
command for adding a rule varies.
IPv4 commands
Add a new rule to the bottom of the IPv4 rules list:
config:#
security ipAccessControl ipv4 rule add <direction> <ip_mask> <policy>
Add a new IPv4 rule by inserting it above or below a specific rule:
config:#
security
ipAccessControl
ipv4
rule
add
<direction>
<ip_mask>
<policy>
<insert>
<rule_number>
-- OR --
Summary of Contents for PX3-3000 series
Page 5: ......
Page 18: ...Contents xviii Index 841...
Page 93: ...Chapter 4 Connecting External Equipment Optional 69...
Page 787: ...Appendix J RADIUS Configuration Illustration 763 Note If your PX3 uses PAP then select PAP...
Page 792: ...Appendix J RADIUS Configuration Illustration 768 14 The new attribute is added Click OK...
Page 793: ...Appendix J RADIUS Configuration Illustration 769 15 Click Next to continue...
Page 823: ...Appendix K Additional PX3 Information 799...