Vigor2952 Series User’s Guide
647
> ipf view -V -c -d
ipf: IP Filter: v3.3.1 (1824)
Kernel: IP Filter: v3.3.1
Running: yes
Log Flags: 0x80947278 = nonip
Default: pass all, Logging: available
T
T
e
e
l
l
n
n
e
e
t
t
C
C
o
o
m
m
m
m
a
a
n
n
d
d
:
:
i
i
p
p
f
f
s
s
e
e
t
t
This command is used to set general rule for firewall.
S
S
y
y
n
n
t
t
a
a
x
x
ipf set [Options]
ipf set
[SET_NO]
rule
[RULE_NO] [Options]
S
S
y
y
n
n
t
t
a
a
x
x
D
D
e
e
s
s
c
c
r
r
i
i
p
p
t
t
i
i
o
o
n
n
Parameter Description
Options
There are several options provided here, such as -v, -c
[SET_NO], -d
[SET_NO],… and etc.
SET_NO
It means to specify the index number (from 1 to 12) of filter set.
RULE_NO
It means to specify the index number (from 1 to 7) of filter rule set.
-v
Type “-v” to view the configuration of general set.
-c
[SET_NO]
It means to setup Call Filter, e.g., -c 2. The range for the index
number you can type is “0” to “12” (0 means “disable).
-d
[SET_NO]
It means to setup Data Filter, e.g.,
-d 3
. The range for the index
number you can type is “0” to “12” (0 means “disable).
-l [VALUE]
It means to setup Log Flag, e.g.,
-l 2
Type “0” to disable the log flag.
Type “1” to display the log of passed packet.
Type “2” to display the log of blocked packet.
Type “3” to display the log of non-matching packet.
- p [VALUE]
It means to setup actions for packet not matching any rule, e.g.,
-p
1
Type “0” to let all the packets pass;
Type “1” to block all the packets.
-R [v4/v6] [Enable/Disable]
Accept routing packet from WAN., e.g.,
-
R v4 0
: Set Accept routing packet from WAN by IPv4 is enable
-R v4 1
: Set Accept routing packet from WAN by IPv6 is disable
-R v6 0
: Set Accept routing packet from WAN by IPv4 is enable
-R v6 1
: Set Accept routing packet from WAN by IPv6 is disable
-L [VALUE]
Enable/Disable Strict Security Firewall, e.g.,
-L 1
.
0:Disable, 1:Enable
-C [VALUE]
Setup the code page, e.g.,
-C 12
.
Type 1 ~ 12 as the code page number. If “0” is set, the code page
setting is disabled.
-M [APPE_NO]
It means to configure APPE for the packets not matching with any
rule, e.g.,
-M 1
Type “0” to let all the packets pass;
Type “1” to block all the packets.
-U [URL_NO]
It means to configure URL content filter for the packets not
Summary of Contents for Vigor 2952 series
Page 1: ......
Page 58: ...Vigor2952 Series User s Guide 46 ...
Page 106: ...Vigor2952 Series User s Guide 94 ...
Page 144: ...Vigor2952 Series User s Guide 132 Refresh Reload the record ...
Page 149: ...Vigor2952 Series User s Guide 137 ...
Page 244: ...Vigor2952 Series User s Guide 232 This page is left blank ...
Page 249: ...Vigor2952 Series User s Guide 237 When you choose IPsec you will see the following graphic ...
Page 314: ...Vigor2952 Series User s Guide 302 This page is left blank ...
Page 337: ...Vigor2952 Series User s Guide 325 ...
Page 372: ...Vigor2952 Series User s Guide 360 This page is left blank ...
Page 385: ...Vigor2952 Series User s Guide 373 ...
Page 460: ...Vigor2952 Series User s Guide 448 ...
Page 560: ...Vigor2952 Series User s Guide 548 This page is left blank ...
Page 588: ...Vigor2952 Series User s Guide 576 ...
Page 595: ...Vigor2952 Series User s Guide 583 ...
Page 599: ...Vigor2952 Series User s Guide 587 ...
Page 601: ...Vigor2952 Series User s Guide 589 P Pa ar rt t I IX X D Dr ra ay yT Te ek k T To oo ol ls s ...
Page 606: ...Vigor2952 Series User s Guide 594 This page is left blank ...
Page 635: ...Vigor2952 Series User s Guide 623 ...
Page 693: ...Vigor2952 Series User s Guide 681 Executation category bas bat com exe inf pif reg scr ...
Page 802: ...Vigor2952 Series User s Guide 790 This page is left blank ...