296
IPSec Commands
E-DOC-CTC-20040216-0002 v1.0
ipsec policy rule create
Create a rule.
Note
If a value is preceded by a “!”, it means "NOT".
E.g. "srcport=!80" means "if srcport is different from 80".
SYNTAX:
where:
policy rule create
chain = <chain name>
[index = <number>]
[srcintf [!]= <string>]
[src [!]= <ip-range>]
[dst [!]= <ip-range>]
[tos [!]= <number{1-255}>]
[precedence [!]= <number{0-7}>]
[dscp [!]= <number{0-63}>]
[prot [!]= <{<supported IP protocol name>|<number>}]
[srcport [!]= <{<supported TCP/UDP port name>|<number>}>]
[srcportend = <{<supported TCP/UDP port name>|<number>}>]
[dstport [!]= <{<supported TCP/UDP port name>|<number>}>]
[dstportend = <{<supported TCP/UDP port name>|<number>}>]
[clink = <chain name>]
[log = <{no|yes}>]
policy = <Connection Profile Name>
chain
The name of the chain in which the rule must be inserted.
REQUIRED
index
The number of the rule before which the new rule must be added.
OPTIONAL
srcintf
The name of the interface the packet should [or should NOT] arrive
on to make this rule apply.
(NOT applicable if used in a chain assigned to the output hook)
OPTIONAL
src
The source IP address (range) the packet should [or should NOT]
come from. (Supports cidr notation).
OPTIONAL
dst
The destination IP address (range) the packet should [or should
NOT] be going to. (Supports cidr notation).
OPTIONAL
tos
A number between 0 and 255.
Represents the Type Of Service (TOS) specification expected [or
NOT expected] in the IP packet.
OPTIONAL
precedence
A number between 0 and 7.
Represents the precedence in the IP packet (part of tos).
OPTIONAL
dscp
A number between 0 and 63.
Represents the DSCP in the IP packet (part of tos).
OPTIONAL
Summary of Contents for SpeedTouch 608
Page 1: ...SpeedTouch 608 Business DSL Routers CLI Reference Guide Release R4 2 7 600 SERIES...
Page 2: ......
Page 3: ...SpeedTouch 608 CLI Reference Guide Release R4 2 7...
Page 66: ...64 Bridge Commands E DOC CTC 20040216 0002 v1 0...
Page 84: ...82 Config Commands E DOC CTC 20040216 0002 v1 0...
Page 126: ...124 DHCP Commands E DOC CTC 20040216 0002 v1 0...
Page 170: ...168 ETHoA Commands E DOC CTC 20040216 0002 v1 0...
Page 234: ...232 IPoA Commands E DOC CTC 20040216 0002 v1 0...
Page 244: ...242 IPQoS Commands E DOC CTC 20040216 0002 v1 0...
Page 356: ...354 Phonebook Commands E DOC CTC 20040216 0002 v1 0...
Page 372: ...370 PPPoA Commands E DOC CTC 20040216 0002 v1 0...
Page 394: ...392 PPPoE Commands E DOC CTC 20040216 0002 v1 0...
Page 410: ...408 QoSBook Commands E DOC CTC 20040216 0002 v1 0...
Page 436: ...434 Software Commands E DOC CTC 20040216 0002 v1 0...
Page 444: ...442 Switch Commands E DOC CTC 20040216 0002 v1 0...
Page 454: ...452 System Commands E DOC CTC 20040216 0002 v1 0...
Page 460: ...458 Systemlog Commands E DOC CTC 20040216 0002 v1 0...
Page 468: ...466 UPnP Commands E DOC CTC 20040216 0002 v1 0...
Page 488: ...486 Supported Key Names E DOC CTC 20040216 0002 v1 0...
Page 489: ......