HP-UX IPFilter Version 15.01 Administrator's Guide
patch dependencies, 19
performance guidelines, 143
performance monitoring, 146
rule configuration, 144
rule loading, 144
system configuration, 143
traffic, 145
performance improvement, 37
performance information, 74
performance monitoring guidelines, 146
pfil module, 141
ping, 34
port keyword, 26
port number filtering, 26
portmap keyword, 62
prerequisites
installation, 19
patch dependencies, 19
proto keyword, 25
protocol 50 and 51 traffic, 113
protocol-based filtering
IPv6, 42
Q
quick keyword, 28
R
rdr keyword, 64
reloading IPFilter, 85
removing, 22
removing IPFilter software
static linking, 141, 142
reporting problems, 34, 88
return-icmp-as-dest keyword, 36
return-rst keyword, 36
rule configuration guidelines, 144
rule groups, 37
rule loading guidelines, 144
rules
active list, 38
adding rules to a rules file, 38, 45
bimap keyword, 66
block keyword, 25
errors occur when loading, 86
file configuration, 24
flags keyword, 30
flushing, 38
from keyword, 25
grouping, 37
icmp-type keyword, 32, 95
in keyword, 25
inactive list, 38
interface-specific, 29
IP address-specific, 25
ipopts keyword, 31
IPv6, 41
keep frags keyword, 35
keep limit keyword, 49
keep state keyword, 32, 33
log keyword, 28, 82
log limit freq keyword, 51
log limit keyword, 50
map keyword, 62
map-block keyword, 63
on keyword, 29
opt keyword, 31
out keyword, 25
outbound traffic, 25
pass keyword, 25
performance improvement with, 37
port keyword, 26
portmap keyword, 62
processing order, 24, 59
proto icmp keep state, 34
proto keyword, 25
quick keyword, 28
rdr keyword, 64
removing, 38
return-icmp-as-dest keyword, 36
return-rst keyword, 36
Serviceguard, 116
swapping active and inactive rules lists, 38
taking effect, 38, 45, 53
to keyword, 25
with frags keyword, 32
with short keyword, 32
S
Serviceguard, 115
Cluster Object Manager, 118
filtering on a package IP address, 116
intra-cluster communication, 117
mandatory rules, 116
Quorum Server, 117
remote command execution, 117
Serviceguard Manager, 118
services, 116
single-user mode, 21
software, loading, 20
state table
dump, 76
static linking, 141
HP-UX 11i v1, 141
HP-UX 11i v2, 141
HP-UX 11i v3, 141
removing IPFilter software, 141, 142
summary logs for cumulative limits, 51
supported interfaces, 122
swinstall, 20
swlist, 19
system configuration guidelines, 143
system traffic guidelines, 145
T
TCP
configuration example, 132
TCP filtering, 26
TCP Wrapper, 71
150 Index