Hitachi Gigabit Router GR2000 Series Enhanced Version Configuration Commands, Vol. 2
1-110
GR2K-GA-0014
Ver. 07-02
Related Configuration Object
filter-list
filter-group
filter-interface
Precautions
1. Use the
filter
command with the set subcommand must precede that of the
related command shown above. If the filter information is set once, further input
is enabled as long as the filter information is not deleted.
2. When the filter information is defined, applicable parameters of the
filter-list
object,
filter-group
object, and
filter-interface
object must also be defined.
3. If this command is inputted in the cases where changes are made on the IP
routing protocol information, the IP multicast protocol information, and the
MPLS information, and the
apply
command is not being executed, the
apply
subcommand is executed before the command is executed, and the changed IP
routing protocol information, IP multicast routing protocol information, and
MPLS information are reflected to the operation.
1.1.11
filter-list (Filter List Information in the Old BSD UNIX-Based Command
System)
Function
Object for creation, modification, deletion, and display of the filter list information.
The filter list determines whether to forward or discard packets that match a specific
condition. Packets not matching such a condition are forwarded. A maximum of
1024 filter list entries (filter conditions) can be created per device.
Input Format
To create or modify the filter list information:
[set] filter-list <Filter List No.> [{ -forward | -drop }] [-protocol
<No.>] [{ -payload_length_upper_limit <Payload Length> |
-payload_length_lower_limit <Payload Length>}][-tos <Value>][{ -ip_pair |
-ip_pair_off }][-ip_source <IP Address> [-<IP Address> | mask <Subnet
Mask> | masklen <Subnet Mask Bit Length> | /<Subnet Mask Bit Length>]]
[-ip_destination <IP Address> [-<IP Address> | mask <Subnet Mask> |
masklen <Subnet Mask Bit Length> | /<Subnet Mask Bit Length>]] [{
-port_pair | -port_pair_off }] [-port_source <Port No.> [-<Port No.>]]
[-port_destination <Port No.> [-<Port No.>]] [{ -pair_synchronized_off |
-pair_synchronized }] [{ -ack_check_off | -ack_check }] [{ -syn_check_off
| -syn_check }] [-icmp_type <No.>] [-icmp_code <No.>] [-igmp_type <No.>]
[-branch_index <No.>] [-policy_routing <Interface Name> <IP Address>]
[-policy_routing-group <policy-Group-Name] [-replace_tos <New Tos>]
To delete the filter list information:
delete filter-list <Filter List No.>
To show the filter list information:
show filter-list [<Filter List No.>]
To show all of the free entry No.:
show filter-list free