D-Link DFL-860E CLI Guide for DFL-260E - Page 135

Reject, Drop, FwdFast, Allow, NAT or SAT.

Page 135 highlights

3.30. IPRule Chapter 3. Configuration Reference 3.30. IPRule Description An IP rule specifies what action to perform on network traffic that matches the specified filter criteria. Properties Index Name Action SourceInterface DestinationInterface SourceNetwork DestinationNetwork Service Schedule NATAction NATSenderAddress NATPool SATTranslate SATTranslateToIP SATTranslateToPort SATAllToOne RequireIGMP MultiplexArgument MultiplexAllToOne The index of the object, starting at 1. (Identifier) Specifies a symbolic name for the rule. (Optional) Reject, Drop, FwdFast, Allow, NAT or SAT. Specifies the name of the receiving interface to be compared to the received packet. Specifies the the destination interface to be compared to the received packet. Specifies the sender span of IP addresses to be compared to the received packet. Specifies the span of IP addresses to be compared to the destination IP of the received packet. Specifies a service that will be used as a filter parameter when matching traffic with this rule. By adding a schedule to a rule, the security gateway will only allow that rule to trigger at those designated times. (Optional) Specify sender address or Use interface address. (Default: UseInterfaceAddress) Specifies which sender address will be used. Specifies which sender address will be used. Specifies whether to translate source IP or destination IP. (Default: DestinationIP) Translate to this IP address. Translate to this port. (Optional) Rewrite all destination IPs to a single IP. (Default: No) Multicast traffic must have been requested using IGMP before it is forwarded. (Default: Yes) Specifies how the traffic should be forwarded and translated. Rewrite all destination IPs to a single IP. (Default: No) 135

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198

3.30. IPRule
Description
An IP rule specifies what action to perform on network traffic that matches the specified filter criter-
ia.
Properties
Index
The index of the object, starting at 1. (Identifier)
Name
Specifies a symbolic name for the rule. (Optional)
Action
Reject, Drop, FwdFast, Allow, NAT or SAT.
SourceInterface
Specifies the name of the receiving interface to be
compared to the received packet.
DestinationInterface
Specifies the the destination interface to be com-
pared to the received packet.
SourceNetwork
Specifies the sender span of IP addresses to be com-
pared to the received packet.
DestinationNetwork
Specifies the span of IP addresses to be compared to
the destination IP of the received packet.
Service
Specifies a service that will be used as a filter para-
meter when matching traffic with this rule.
Schedule
By adding a schedule to a rule, the security gateway
will only allow that rule to trigger at those desig-
nated times. (Optional)
NATAction
Specify sender address or Use interface address.
(Default: UseInterfaceAddress)
NATSenderAddress
Specifies which sender address will be used.
NATPool
Specifies which sender address will be used.
SATTranslate
Specifies whether to translate source IP or destina-
tion IP. (Default: DestinationIP)
SATTranslateToIP
Translate to this IP address.
SATTranslateToPort
Translate to this port. (Optional)
SATAllToOne
Rewrite all destination IPs to a single IP. (Default:
No)
RequireIGMP
Multicast traffic must have been requested using IG-
MP before it is forwarded. (Default: Yes)
MultiplexArgument
Specifies how the traffic should be forwarded and
translated.
MultiplexAllToOne
Rewrite all destination IPs to a single IP. (Default:
No)
3.30. IPRule
Chapter 3. Configuration Reference
135