Chapter11pf
ExampleT orejectTCPpacketspassingthroughandnotrecorditintolog,
executethefollowingcommand:
#ruleaddactionrejectl3protocol6logno
ruleclean
Command
Function
Thiscommandisusedtoclearallpacketīælteringrules.
CommandFormatruleclean
ruledelete
Command
Function
Thiscommandisusedtodeleteonepacketīælteringrule.
CommandFormatruledeleteid<number>
Parameter
Description
Parameter
Description
<number>Thisisruleid.
Command
Illustration
Toshowruleid,executecommandruleshow.
ExampleT odeleteonerulewhoseIDis8122,executethefollowingcom-
mand:
#ruledeleteid8122
rulemodify
Command
Function
ThiscommandisusedtomodifyoneIPpacketīælteringrule.
CommandFormatrulemodifyid<numbe1>[action<accept|reject>][l2pro
tocol<ip|0800>][area<string1>][log<yes|no>][smac<str
ing2>][dmac<string3>][l3protocol<all|0|tcp|6|udp|17|icm
p|1|igmp|2|number>][sip<string4>][dip<string5>][sport
<number2>][dport<number3>][sport_end<numbe4>][dpor
t_end<number5>]
Parameter
Description
Parameter
Description
modifyThismodifiesonepacketfilteringrule.
idThisisruleid.
<numbe1>Thisisonenumber.
action
Thisistheactiontopacketmeetingrules:
permitordeny.
accept|rejectpermit|deny
ConfidentialandProprietaryInformationofZTECORPORATION123