Noprint | |||||||||
---|---|---|---|---|---|---|---|---|---|
|
Panel | ||||
---|---|---|---|---|
In this section:
|
...
Parameter | Description | ||
---|---|---|---|
| The name of this access control list rule. | ||
| Use this parameter to specify the rule precedence (e.g. when the rule is loaded and executed over other Rule for each incoming packet)to control which ACL rule is applied when multiple rules match a given packet. If an incoming packet matches two identical Rule, then multiple rules, the IP ACL rule with the highest precedence (lowest numerical precedence value) is applied for to that incoming packet. Each IP ACL rule must use a unique precedence value. | ||
| Enter IP protocol type for use as a criterion of the IP input match. Choices are 0-255, or one of the following:
These protocols are typically associated with particular logical port values. | ||
| The name of a IP interface group to match or "any" to match any IP interface group. | ||
| The name of an IP interface to match, or "any" to match any IP interface. | ||
| The name of an management Interface Groupa Management Interface Group. NOTE: The | ||
| The name of an management IP Interfacea Management IP Interface. NOTE: The | ||
| The source IP address to match.
| ||
| The length of source IP address prefix which must match the protocol. Must be 0 - | ||
| The destination IP address (IPV4/IPV6) prefix to match.
| ||
Destination Address Prefix Length | Specifies the length of destination IP address prefix. The value ranges from 0 to 128 and the default value is 0. | ||
| The IP port value. Must be 0 - 65535, default is any. | ||
| The IP port value. Must be 0 - 65535, default is any. | ||
| The action to be taken when the IP access control list rule match.
| ||
| The number of packets to add to the bucket credit balance (in packets/second). If a packet is received at a rate exceeding this fill rate, it is discarded subjected to the discard rate set in the IP Policing Alarm profile or in the Policer Alarm monitoring this Media Port. The bucket credit balance is always less than the configured bucket size regardless of the size of this increment. Must be 1 - 10000, default is 50. | ||
| The policing bucket size (in packets). It represents a credit balance that should be consumed before the packets are discarded. The consumed credits reside in the bucket and gets reduced for every packet received on the Network Interface (NI). If a packet is received when the credit balance is less than the size of the packet, the packet is discarded subjected to the discard rate set in the IP Policing Alarm profile or in the Policer Alarm monitoring this Media Port. (default is 'unlimited', which allows continuous policing). Must be 2048-65520, default is 50. | ||
| It specifies the administrative state of ACL rule.
| ||
Vm App Name | Specifies the name of the Virtual Machine application used. | ||
Aggregate Policer | Specifies the name of aggregate policer with which this rule is associated. |
...