SROS Command Line Interface Reference Guide
Global Configuration Mode Command Set
5991-2114
© Copyright 2007 Hewlett-Packard Development Company, L.P.
432
ip policy-class
<policyname>
rpf-check
Use the
ip policy-class rpf-check
command to verify that traffic has entered on the appropriate interface
using a route lookup. Reverse Path Forwarding (RPF) is essentially a spoofing check. For more details on
IP policy class functionality in SROS, refer to
on page 426. Use the
no
form
of this command to disable this feature.
Syntax Description
<policyname>
Identifies the configured access policy using an alphanumeric descriptor
(maximum of 255 characters). All access policy descriptors are
case-sensitive.
rpf-check
Enables RPF check (spoofing).
Default Values
This command is enabled by default.
Functional Notes
The
rpf-check
feature should be disabled if your application allows incoming traffic on policy classes that
do not match the route table’s source destination specifications. This feature can be disabled on a per pol-
icy class basis by issuing the command in conjunction with the policy class name you do not want to be
checked.
Usage Examples
The following example turns off the
rpf-check
feature for the
Private
policy class:
ProCurve(config)#no ip policy-class Private rpf-check
Содержание ProCurve Secure 7102dl
Страница 2: ......
Страница 3: ...SROS Command Line Interface Reference Guide Software Version J 08 03 September 2007 61195880L1 35H ...
Страница 1454: ......