182
Firewall Commands
E-DOC-CTC-20040216-0002 v1.0
firewall rule create
Create a rule.
Note
If a value is preceded by a “!”, it means "NOT".
E.g. "dstintfgrp=!wan" means "if dstintfgrp is different from WAN".
SYNTAX:
where:
firewall rule create
chain = <string>
[index = <number>]
[srcintf [!]= <string>]
[srcintfgrp [!]= <{wan|local|lan} or number>]
[src [!]= <ip-address>]
[dstintf [!]= <string>]
[dstintfgrp [!]= <{wan|local|lan} or number>]
[dst [!]= <ip-address>]
[tos [!]= <number{1-255}>]
[precedence [!]= <number{0-7}>]
[dscp [!]= <number{0-63}>]
[prot [!]= <{<supported IP protocol name>|<number>}>]
[syn = <yes|no>]
[urg = <yes|no>]
[ack = <yes|no>]
[srcport [!]= <{<supported TCP/UDP port name>|<number>}>]
[srcportend = <{<supported TCP/UDP port name>|<number>}>]
[dstport [!]= <{<supported TCP/UDP port name>|<number>}>]
[dstportend = <{<supported TCP/UDP port name>|<number>}>]
[icmptype [!]= <{<supported ICMP type name>|<number>}>]
[icmpcode [!]= <number{0-15}>]
[icmpcodeend = <number{0-15}>]
[clink = <string>]
[log = <{no|yes}>]
action = <{accept|deny|drop|count}>
chain
The name of the chain in which the rule must be inserted.
REQUIRED
index
The number of the rule before which the new rule must be added.
OPTIONAL
srcintf
The name of the interface the packet should [or should NOT] arrive
on to make this rule apply.
Note
NOT applicable if used in a chain assigned to the
output
hook.
OPTIONAL
Содержание SpeedTouch 608
Страница 1: ...SpeedTouch 608 Business DSL Routers CLI Reference Guide Release R4 2 7 600 SERIES...
Страница 2: ......
Страница 3: ...SpeedTouch 608 CLI Reference Guide Release R4 2 7...
Страница 66: ...64 Bridge Commands E DOC CTC 20040216 0002 v1 0...
Страница 84: ...82 Config Commands E DOC CTC 20040216 0002 v1 0...
Страница 126: ...124 DHCP Commands E DOC CTC 20040216 0002 v1 0...
Страница 148: ...146 Env Commands E DOC CTC 20040216 0002 v1 0 env flush Flush all non system environment variables...
Страница 150: ...148 Env Commands E DOC CTC 20040216 0002 v1 0 RELATED COMMANDS env list List all environment variables...
Страница 152: ...150 Env Commands E DOC CTC 20040216 0002 v1 0 env list Show all currently available environment variables...
Страница 154: ...152 Env Commands E DOC CTC 20040216 0002 v1 0 env unset Delete a non system environment variable...
Страница 170: ...168 ETHoA Commands E DOC CTC 20040216 0002 v1 0...
Страница 218: ...216 IP Commands E DOC CTC 20040216 0002 v1 0 ip auto flush Flush the autoIP interfaces SYNTAX ip auto flush...
Страница 234: ...232 IPoA Commands E DOC CTC 20040216 0002 v1 0...
Страница 244: ...242 IPQoS Commands E DOC CTC 20040216 0002 v1 0...
Страница 356: ...354 Phonebook Commands E DOC CTC 20040216 0002 v1 0...
Страница 372: ...370 PPPoA Commands E DOC CTC 20040216 0002 v1 0...
Страница 394: ...392 PPPoE Commands E DOC CTC 20040216 0002 v1 0...
Страница 410: ...408 QoSBook Commands E DOC CTC 20040216 0002 v1 0...
Страница 436: ...434 Software Commands E DOC CTC 20040216 0002 v1 0...
Страница 444: ...442 Switch Commands E DOC CTC 20040216 0002 v1 0...
Страница 454: ...452 System Commands E DOC CTC 20040216 0002 v1 0...
Страница 460: ...458 Systemlog Commands E DOC CTC 20040216 0002 v1 0...
Страница 468: ...466 UPnP Commands E DOC CTC 20040216 0002 v1 0...
Страница 488: ...486 Supported Key Names E DOC CTC 20040216 0002 v1 0...
Страница 489: ......
Страница 490: ...2004 THOMSON Telecom All rights reserved E DOC CTC 20040216 0002 v1 0 600 SERIES www speedtouch com Built for excellence...