
182
Firewall Commands
E-DOC-CTC-20040216-0002 v1.0
firewall rule create
Create a rule.
Note
If a value is preceded by a “!”, it means "NOT".
E.g. "dstintfgrp=!wan" means "if dstintfgrp is different from WAN".
SYNTAX:
where:
firewall rule create
chain = <string>
[index = <number>]
[srcintf [!]= <string>]
[srcintfgrp [!]= <{wan|local|lan} or number>]
[src [!]= <ip-address>]
[dstintf [!]= <string>]
[dstintfgrp [!]= <{wan|local|lan} or number>]
[dst [!]= <ip-address>]
[tos [!]= <number{1-255}>]
[precedence [!]= <number{0-7}>]
[dscp [!]= <number{0-63}>]
[prot [!]= <{<supported IP protocol name>|<number>}>]
[syn = <yes|no>]
[urg = <yes|no>]
[ack = <yes|no>]
[srcport [!]= <{<supported TCP/UDP port name>|<number>}>]
[srcportend = <{<supported TCP/UDP port name>|<number>}>]
[dstport [!]= <{<supported TCP/UDP port name>|<number>}>]
[dstportend = <{<supported TCP/UDP port name>|<number>}>]
[icmptype [!]= <{<supported ICMP type name>|<number>}>]
[icmpcode [!]= <number{0-15}>]
[icmpcodeend = <number{0-15}>]
[clink = <string>]
[log = <{no|yes}>]
action = <{accept|deny|drop|count}>
chain
The name of the chain in which the rule must be inserted.
REQUIRED
index
The number of the rule before which the new rule must be added.
OPTIONAL
srcintf
The name of the interface the packet should [or should NOT] arrive
on to make this rule apply.
Note
NOT applicable if used in a chain assigned to the
output
hook.
OPTIONAL
Summary of Contents for SpeedTouch 608
Page 1: ...SpeedTouch 608 Business DSL Routers CLI Reference Guide Release R4 2 7 600 SERIES...
Page 2: ......
Page 3: ...SpeedTouch 608 CLI Reference Guide Release R4 2 7...
Page 66: ...64 Bridge Commands E DOC CTC 20040216 0002 v1 0...
Page 84: ...82 Config Commands E DOC CTC 20040216 0002 v1 0...
Page 126: ...124 DHCP Commands E DOC CTC 20040216 0002 v1 0...
Page 170: ...168 ETHoA Commands E DOC CTC 20040216 0002 v1 0...
Page 234: ...232 IPoA Commands E DOC CTC 20040216 0002 v1 0...
Page 244: ...242 IPQoS Commands E DOC CTC 20040216 0002 v1 0...
Page 356: ...354 Phonebook Commands E DOC CTC 20040216 0002 v1 0...
Page 372: ...370 PPPoA Commands E DOC CTC 20040216 0002 v1 0...
Page 394: ...392 PPPoE Commands E DOC CTC 20040216 0002 v1 0...
Page 410: ...408 QoSBook Commands E DOC CTC 20040216 0002 v1 0...
Page 436: ...434 Software Commands E DOC CTC 20040216 0002 v1 0...
Page 444: ...442 Switch Commands E DOC CTC 20040216 0002 v1 0...
Page 454: ...452 System Commands E DOC CTC 20040216 0002 v1 0...
Page 460: ...458 Systemlog Commands E DOC CTC 20040216 0002 v1 0...
Page 468: ...466 UPnP Commands E DOC CTC 20040216 0002 v1 0...
Page 488: ...486 Supported Key Names E DOC CTC 20040216 0002 v1 0...
Page 489: ......