799
object-policy ip
rule
(IPv4 object policy view)
rule
(IPv6 object policy view)
object-policy apply ip
Use
object-policy apply ip
to apply an IPv4 object policy to a zone pair.
Use
undo object-policy apply ip
to restore the default.
Syntax
object-policy apply ip object-policy-name
undo object-policy apply ip object-policy-name
Default
IPv4 object policies are not applied to a zone pair.
Views
Zone pair view
Predefined
user
roles
network-admin
Parameters
object-policy-name
: Specifies an IPv4 object policy by its name, a case-insensitive string of 1 to 63
characters.
Usage
guidelines
If the specified object policy does not exist, this command fails.
You can apply only one IPv4 object policy to each zone pair. To apply a new IPv4 object policy to an
instance, remove the application of the existing IPv4 object policy.
Examples
# Configure an IPv4 object policy and apply it to a zone pair.
<Sysname> system-view
[Sysname] object-policy ip permit
[Sysname-object-policy-ip-permit] quit
[Sysname] zone-pair security source office destination library
[Sysname-zone-pair-security-office-library] object-policy apply ip permit
Related commands
display object-policy zone-pair security
object-policy apply ipv6
object-policy ip
object-policy apply ipv6
Use
object-policy apply ipv6
to apply an IPv6 object policy to a zone pair.
Use
undo
object-policy apply ipv6
to restore the default.
Syntax
object-policy apply ipv6 object-policy-name