116
SBC session border controllers
<ACTION>
<P_IDX>
none
any
echo-reply
destination-
unreachable
network-unreachable
host-unreachable
protocol-unreachable
port-unreachable
fragmentation-needed
source-route-failed
network-unknown
host-unknown
network-prohibited
host-prohibited
TOS-network-
unreachable TOS-
host-unreachable
communication-
prohibited
host-precedence-
violation
precedence-cutoff
source-quench
redirect
network-redirect
host-redirect
TOS-network-redirect
TOS-host-redirect
echo-request
router-advertisement
router-solicitation
time-exceeded
ttl-zero-during-
transit
ttl-zero-during-
reassembly
parameter-problem
ip-header-bad
required-option-
missing
timestamp-request
timestamp-reply
address-mask-request
address-mask-reply
accept, drop, reject
1-65535
Action — action executed by this rule:
–
ACCEPT — packets falling under this rule will
be accepted by the firewall;
–
DROP — packets falling under this rule will
be rejected by the firewall without informing
the party that has sent these packets;
–
DROP — packets falling under this rule will
be rejected by the firewall; the party that has
sent the packet will receive either TCP RST
packet or 'ICMP destination unreachable'.
Firewall profile number
add rule string
<direction>
<ENABLE>
input
output
enable/disable
Add firewall rule — string check.
Rule direction
Enable/disable rule
Rule name