Filter Policies
7450 ESS OS Router Configuration Guide
Page 419
IP (v4) Filter Entry Commands
action
Syntax
action drop
action forward
[
next-hop
{
ip-address
|
indirect
ip-address
|
interface
ip-int-name
}]
action forward
[
redirect-policy
policy-name
]
action forward
[
sap
sap-id
|
sdp
s
dp-id
]
action http-redirect url
action nat
no action
Context
config>filter>ip-filter>entry
Description
This command specifies the action to take for packets that match this filter entry. The
action
command must be entered with a keyword specified in order for the entry to be active.
Note that
action
forward
next-hop
cannot be applied to multicast traffic.
Multiple action statements entered will overwrite previous actions parameters when defined.
The
no
form of the command removes the specified
action
statement. The filter entry is considered
incomplete and hence rendered inactive without the
action
keyword.
Default
none
Parameters
drop —
Specifies packets matching the entry criteria will be dropped.
forward —
Specifies packets matching the entry criteria will be forwarded.
next-hop ip-address —
The IP address of the direct next-hop to which to forward matching packets
in dotted decimal notation.
indirect ip-address —
The IP address of the indirect next-hop to which to forward matching packets
in dotted decimal notation. The direct next-hop IP address and egress IP interface are determined
by a route table lookup.
If the next hop is not available, then a routing lookup will be performed and if a match is found
the packet will be forwarded to the result of that lookup. If no match is found a "ICMP
destination unreachable" message is send back to the origin.
interface ip-int-name —
The name of the egress IP interface where matching packets will be
forwarded from. This parameter is only valid for unnumbered point-to-point interfaces. If the
string contains special characters (#, $, spaces, etc.), the entire string must be enclosed within
double quotes.
nat —
specifyies that matching traffic is to be redirected for NAT performed by Integrated Service
Adapter(s) running NAT application.
redirect policy-name —
Specifies the redirect policy configured in the
config>filter>redirect-policy
context.
Содержание 7450 ESS Series
Страница 10: ...Page 10 7450 ESS OS Router Configuration Guide List of Tables...
Страница 12: ...Page 12 7450 ESS OS Router Configuration Guide List of Figures...
Страница 16: ...Preface Page 16 7450 ESS OS Router Configuration Guide...
Страница 18: ...Getting Started Page 18 7450 ESS OS Router Configuration Guide...
Страница 160: ...Page 160 7450 ESS OS Router Configuration Guide...
Страница 270: ...Page 270 7450 ESS OS Router Configuration Guide...
Страница 286: ...Page 286 7450 ESS OS Router Configuration Guide...
Страница 288: ...Page 288 7450 ESS OS Router Configuration Guide...
Страница 292: ...Page 292 7450 ESS OS Router Configuration Guide...
Страница 344: ...Page 344 7450 ESS OS Router Configuration Guide...
Страница 370: ...Page 370 7450 ESS OS Router Configuration Guide a When snap header is present this is always set to AA AA...
Страница 372: ...Page 372 7450 ESS OS Router Configuration Guide...
Страница 400: ...Page 400 7450 ESS OS Router Configuration Guide...
Страница 425: ...Filter Policies 7450 ESS OS Router Configuration Guide Page 425 ethernet_II Specifies the frame type is Ethernet Type II...
Страница 486: ...Page 486 7450 ESS OS Router Configuration Guide...
Страница 516: ...Page 516 7450 ESS OS Router Configuration Guide...
Страница 532: ...Page 532 7450 ESS OS Router Configuration Guide...