Switch User Manual

set policy rule
SecureStack C3 Configuration Guide 11-11
Defaults
None.
Mode
Switchcommand,readwrite.
profileindex Specifiesapolicyprofilenumbertowhichthisrulewillbeassigned.
Policyprofilesareconfiguredwiththesetpolicyprofilecommandas
describedinsetpolicyprofileonpage 114.Validprofileindexvalues
are1‐255.
ether Specifiesthattheruleshouldapply
totrafficwiththespecifiedtypefield
inEthernetIIpacket.
ipproto SpecifiesthattheruleshouldapplytotrafficwiththespecifiedProtocol
fieldinIPpacket.
ipdestsocket Specifiesthatthe ruleshouldapplytotrafficwiththespecified
destinationIPaddresswithoptionalpostfixedport.
ipsourcesocket Specifiesthattherule
shouldapplytotrafficwiththespecif iedsourceIP
address,withoptionalpostfixedport.
iptos SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTypeof
ServicefieldinIPpacket.
macdest Specifiesthattheruleshould applytotrafficwiththespecifiedMAC
destinationaddress.
macsource Specifiesthatthe
ruleshouldapplytotrafficwiththespecifiedMAC
sourceaddress.
tcpdestport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTCP
destinationport.
tcpsourceport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTCP
sourceport.
udpdestport Specifiesthattheruleshouldapplytotrafficwiththe
specifiedUDP
destinationport.
udpsourceport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedUDP
sourceport.
data Specifiesthecodeforthespecifiedtrafficclassifier(listedabove).This
valueisdependentonthe classificationtypeentered.RefertoTable 113
forvalidvaluesforeachclassificationtype.
maskmask (Optional)
Specifiesthenumberofsignificantbitstomatch,dependenton
thedatavalueentered.RefertoTable 113forvalidvaluesforeach
classificationtypeanddatavalue.
vlanvlan SpecifiestheactionoftheruleistoclassifytoaVLANID.
coscos Specifiestheactionoftheruleis
toclassifytoaClassofServiceID.Valid
valuesare0‐4095. Avalueof‐1indicatesthatnoCoSforwarding
behaviormodificationisdesired.(NotsupportedonB3,C3,andG3.)
drop|forward Specifiesthatpacketswithinthisclassificationwillbedroppedor
forwarded.