Specifications

set policy rule
SecureStack B2 Configuration Guide 12-11
Defaults
None.
Mode
Switchcommand,readwrite.
profileindex Specifiesapolicyprofilenumbertowhichthisrulewillbeassigned.
Policyprofilesareconfiguredwiththesetpolicyprofilecommandas
describedinsetpolicyprofileonpage 123.Validprofileindexvalues
are1‐255.
ether Specifiesthattheruleshouldapply
totrafficwiththespecifiedtypefield
inEthernetIIpacket.
icmptype ClassifiesbasedonICMPtype.
ipproto SpecifiesthattheruleshouldapplytotrafficwiththespecifiedProtocol
fieldinIPpacket.
ipdestsocket Specifiesthatthe ruleshouldapplytotrafficwiththespecified
destinationIPaddresswithoptionalpostfixed
port.
ipsourcesocket SpecifiesthattheruleshouldapplytotrafficwiththespecifiedsourceIP
address,withoptionalpostfixedport.
iptos SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTypeof
ServicefieldinIPpacket.
macdest Specifiesthattheruleshould applytotrafficwiththespecifiedMAC
destinationaddress.
macsource SpecifiesthattheruleshouldapplytotrafficwiththespecifiedMAC
sourceaddress.
tcpdestport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTCP
destinationport.
tcpsourceport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTCP
sourceport.
udpdestport Specifiesthattheruleshould
applytotrafficwiththespecifiedUDP
destinationport.
udpsourceport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedUDP
sourceport.
data Specifiesthecodeforthespecifiedtrafficclassifier(listedabove).This
valueisdependentontheclassificationtypeentered.RefertoTable 1231
forvalidvaluesfor
eachclassificationtype.
maskmask (Optional)Specifiesthenumberofsignificantbitstomatch,dependenton
thedatavalueentered.RefertoTable 1231forvalidvaluesforeach
classificationtypeanddatavalue.
vlanvlan SpecifiestheactionoftheruleistoclassifytoaVLANID.
coscos Specifiesthe
actionoftheruleistoclassifytoaClassofServiceID.Valid
valuesare0‐4095. Avalueof‐1indicatesthatnoCoSforwarding
behaviormodificationisdesired.(NotsupportedonB3,C3,andG3.)
drop|forward Specifiesthatpacketswithinthisclassificationwillbedroppedor
forwarded.