H3C Technologies H3C Intelligent Management Center User Manual

Page 846

Advertising
background image

832

Matching String: Contains the hexadecimal string to be matched in a packet, the mask, and the

offset values for a user-defined pattern-matching rule.

Time range info:

No.: Contains the sequence or rule number for the time range specified for the associated the Rule
Set.

Name: Contains the name assigned to the Time Range specified for the associated rule set. The
value in the Name field serves as a link for navigating to the View Time Range page for the

associated rule. This page displays time range configuration information for the associated rule.

To view the rule information for a rule for an ACL resource

1.

Navigate to ACL Resource:

a.

Click the Service tab from the tabular navigation system on the top.

b.

Click ACL Management section of the navigation tree on the left.

c.

Click the ACL Resource link located under ACL Management on the navigation tree on the left.
The ACL Resource list displays in the main pane of the ACL Resource page.

2.

Click the ACL Identifier for the ACL for which you want to view the Rule Set List.
The Rule Set List displays in the main pane of the ACL Resource > <ACL Resource Name (ACL
Identifier)> page.

3.

Click the name in the Rule Set Name field for the Rule Set for which you want to view configuration
information.
The Rule Set Info displays in the main pane of the ACL Resource > <ACL Resource Name (ACL
Identifier)> > <Rule Set Name> page.

4.

Click the rule No. in the Rule Info section of the Rule Set Info page for which you want to view rule
information.
The ACL Rule Information page varies based on ACL type.

Rule Info page for Basic ACL

The Rule Info page displays in the main pane of the ACL Resource > <ACL Resource Name (ACL
Identifier)> > <Rule Set Name> > View Basic Rule page.
The Basic Info field names and explanations include:

Action: Contains the access control action specified in the associated rule. Actions include permit

and deny.

Time Range: Contains the time range specified for this rule.

Source Address: Contains the source address specified in the associated rule for which the action

is taken. For example, if the action is to permit IP traffic, this field identifies the source IP address
from which IP traffic is permitted.
The Other Settings field names and explanations include:

Fragment: Identifies whether or not the rule is configured to apply to all fragments (Yes) or to apply
to first fragments (No).

Logging: Identifies whether or not logging is enabled.

VPN Instance: Identifies the VPN instance name for the VPN instance to which this rule is applied.
The VPN-instance-name argument takes a case sensitive string of 0-31 characters. If no VPN is

specified, the rule applies only to non-VPN packets.

Rule info page for advanced ACL

Advertising