show policy rule
SecureStack C2 Configuration Guide 9-7
Defaults
Ifverboseisnotspecified,summaryinformationwillbedisplayed.
Mode
Switchcommand,read‐only.
Example
ThisexampleshowshowtodisplaypolicyclassificationinformationforEthernettype2rules
C2(su)->show policy rule ether
|PID |Rule Type |Rule Data |Mk|PortStr |RS|ST|VLAN|CoS |U|
|02 |Ether |2048 (0x0800) |16|All | A|NV|fwrd| |?|
|02 |Ether |2049 (0x0801) |16|All | A|NV|drop| |?|
|02 |Ether |2989 (0x0bad) |16|All | A|NV|drop| |?|
|02 |Ether |33079 (0x8137) |16|All | A|NV|drop| |?|
Thisexampleshowshowtodisplaypolicyclassificationinformationforadministrativerule1
C2(su)->show policy rule admin-pid 1
|Admin|Rule Type |Rule Data |Mk|PortStr |RS|ST|dPID|aPID|U|
|admin|Port |ge.1.1 |16|ge.1.1 | A|NV| | 1|?|
|admin|Port |ge.1.2 |16|ge.1.2 | A|NV| | 1|?|
|admin|Port |ge.1.3 |16|ge.1.3 | A|NV| | 1|?|
|admin|Port |ge.1.4 |16|ge.1.4 | A|NV| | 1|?|
|admin|Port |ge.1.5 |16|ge.1.5 | A|NV| | 1|?|
|admin|Port |ge.1.6 |16|ge.1.6 | A|NV| | 1|?|
|admin|Port |ge.1.7 |16|ge.1.7 | A|NV| | 1|?|
|admin|Port |ge.1.8 |16|ge.1.8 | A|NV| | 1|?|
|admin|Port |ge.1.9 |16|ge.1.9 | A|NV| | 1|?|
|admin|Port |ge.1.10 |16|ge.1.10 | A|NV| | 1|?|
|admin|Port |ge.1.11 |16|ge.1.11 | A|NV| | 1|?|
|admin|Port |ge.1.12 |16|ge.1.12 | A|NV| | 1|?|
Table 9‐2providesanexplanationofthecommandoutput.
‐verbose (Optional)Displaysdetailedinformation.
usage‐list (Optional)Ifselected,eachruleʹsusage‐listshallbecheckedandshall
displayonlythoseportswhichhaveappliedthisrule.
display‐if‐used (Optional)Displaysrule(s)onlyiftheyareappliedtoatleastone
port.
Table 9-2 show policy rule Output Details
Output What It Displays...
PID Profile index number. Assigned to this classification rule with the set policy profile
command (“set policy profile” on page 9-3).
Rule Type Type of classification rule. Refer to Table 9-3 for valid types.
Rule Data Rule data value. Refer to Table 9-3 for valid values for each classification type.
Mk Rule data mask. Refer to Tabl e 9-3 for valid values for each classification data value.
PortStr Ingress port(s) to which this rule applies.
RS Whether or not the status of this rule is active (A), not in service or not ready.
ST Whether or not this rule’s storage type is non-volatile (NV) or volatile (V).