ProCurve 6200yl User's Guide Page 83

  • Download
  • Add to my manuals
  • Print
  • Page
    / 596
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 82
3-23
Virus Throttling
Configuring and Applying Connection-Rate ACLs
Configuring a Connection-Rate ACL Using UDP/TCP
Criteria
(To configure a connection-rate ACL using source IP address criteria, refer
to page 3-21.)
Syntax: ip access-list connection-rate-filter < crf-list-name >
Creates a connection-rate-filter ACL and puts the CLI
into the access control entry (ACE) context:
ProCurve(config-crf-nacl)#
If the ACL already exists, this command simply puts
the CLI into the ACE context.
Syntax: < filter | ignore > < udp | tcp > < any >
< filter | ignore > < udp | tcp > < host < ip-addr > > [ udp/tcp-options ]
< filter | ignore > < udp | tcp > < ip-addr < mask-length > [ udp/tcp-options ]
Used in the ACE context (above) to specify the action
of the connection-rate ACE (filter or ignore), and the
UDP/TCP criteria and SA of the IP traffic that the ACE
affects.
< filter | ignore >
filter: This option assigns a policy of filtering (drop-
ping) IP traffic having an SA that matches the source
address criteria in the ACE.
ignore: This option specifies a policy of allowing IP
traffic having an SA that matches the source address
criteria in the ACE.
< udp | tcp > < any | host < ip-addr > | ip-addr < mask-length >>
Applies the filter or ignore action to either TCP pack-
ets or UDP packets having the specified SA.
any: Applies the ACEs action (filter or ignore) to IP
traffic having any SA.
host < ip-addr >: Applies the ACEs action (filter or
ignore) to IP traffic having the specified host SA.
Page view 82
1 2 ... 78 79 80 81 82 83 84 85 86 87 88 ... 595 596

Comments to this Manuals

No comments