set policy rule
SecureStack C2 Configuration Guide 11-11
Defaults
None.
Mode
Switchcommand,read‐write.
profile‐index Specifiesapolicyprofilenumbertowhichthisrulewillbeassigned.
Policyprofilesareconfiguredwiththesetpolicyprofilecommandas
describedin“setpolicyprofile”onpage 11‐3.Validprofile‐indexvalues
are1‐255.
ether Specifiesthattheruleshouldapply
totrafficwiththespecifiedtypefield
inEthernetIIpacket.
icmptype ClassifiesbasedonICMPtype.
ipproto SpecifiesthattheruleshouldapplytotrafficwiththespecifiedProtocol
fieldinIPpacket.
ipdestsocket Specifiesthatthe ruleshouldapplytotrafficwiththespecified
destinationIPaddresswithoptionalpost‐fixed
port.
ipsourcesocket SpecifiesthattheruleshouldapplytotrafficwiththespecifiedsourceIP
address,withoptionalpost‐fixedport.
iptos SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTypeof
ServicefieldinIPpacket.
macdest Specifiesthattheruleshould applytotrafficwiththespecifiedMAC
destinationaddress.
macsource SpecifiesthattheruleshouldapplytotrafficwiththespecifiedMAC
sourceaddress.
tcpdestport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTCP
destinationport.
tcpsourceport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedTCP
sourceport.
udpdestport Specifiesthattheruleshould
applytotrafficwiththespecifiedUDP
destinationport.
udpsourceport SpecifiesthattheruleshouldapplytotrafficwiththespecifiedUDP
sourceport.
data Specifiesthecodeforthespecifiedtrafficclassifier(listedabove).This
valueisdependentonthe classificationtypeentered.RefertoTable 11‐3
forvalidvaluesfor
eachclassificationtype.
maskmask (Optional)Specifiesthenumberofsignificantbitstomatch,dependenton
thedatavalueentered.RefertoTable 11‐3forvalidvaluesforeach
classificationtypeanddatavalue.
vlanvlan SpecifiestheactionoftheruleistoclassifytoaVLANID.
coscos Specifiesthe
actionoftheruleistoclassifytoaClass‐of‐ServiceID.Valid
valuesare0‐4095. Avalueof‐1indicatesthatnoCoSforwarding
behaviormodificationisdesired.(NotsupportedonB3,C3,andG3.)
drop|forward Specifiesthatpacketswithinthisclassificationwillbedroppedor
forwarded.