Filter Command Reference
370 7705 SAR OS Router Configuration Guide
Parameters icmp-code — the ICMP code values that must be present to match
Values 0 to 255 (values can be expressed in decimal, hexadecimal, or
binary – DHB)
keywords - none | network-unreachable | host-unreachable |
protocol-unreachable | port-unreachable | fragmentation-needed |
source-route-failed | dest-network-unknown | dest-host-unknown
| src-host-isolated | network-unreachable-for-tos | host-
unreachable-for-tos
icmp-type
Syntax icmp-type icmp-type
no icmp-type
Context config>security>policy>entry>match
Description This command configures matching on the ICMP type field in the ICMP header of an IPv4 packet as
a match criterion.
This option is only meaningful if the protocol match criterion specifies ICMP (1).
The no form of the command removes the criterion from the match entry.
Default no icmp-type
Parameters icmp-type — the ICMP type values that must be present to match
Values 0 to 255 (values can be expressed in decimal, hexadecimal, or
binary – DHB)
keywords - none | echo-reply | dest-unreachable | source-quench
| redirect | echo-request | router-advt | router-selection | time-
exceeded | parameter-problem | timestamp-request | timestamp-
reply | addr-mask-request | addr-mask-reply
src-ip
Syntax src-ip ip-address to ip-address
no src-ip
Context config>security>policy>entry>match
Description This command configures the source IP address or address range to be used in the matching criteria of
a policy entry. All packets within the specified IP address range are processed for matching criteria.
The no form of the command removes the source IP address match criteria.
Default n/a