H3C Technologies H3C WA3600 Series Access Points User Manual
Page 370
357
Item
Description
Rule ID
Select the Rule ID option and enter a number for the rule.
If you do not specify the rule number, the system assigns one
automatically.
IMPORTANT:
If the rule number you specify already exists, the following
operations modify the configuration of the rule.
Action
Select the action to be performed for IPv4 packets matching
the rule.
•
Permit—Allows matching packets to pass.
•
Deny—Drops matching packets.
Non-First Fragments Only
Select this option to apply the rule to only non-first fragments.
If you do no select this option, the rule applies to all
fragments and non-fragments.
Logging
Select this option to log matching IPv4 packets.
A log entry contains the ACL rule number, action on the
matching packets, protocol that IP carries,
source/destination address, source/destination port
number, and number of matching packets.
IP Address Filter
Source IP Address
Select the Source IP Address option and enter a source IPv4
address and source wildcard, in dotted decimal notation.
Source Wildcard
Destination IP Address
Select the Destination IP Address option and enter a
destination IP address and source wildcard, in dotted
decimal notation.
Destination Wildcard
Protocol
Select the protocol to be carried by IP.
If you select 1 ICMP, you can configure the ICMP message
type and code; if you select 6 TCP or 17 UDP, you can
configure the TCP or UDP specific items.
ICMP Type
ICMP Message
Specify the ICMP message type and code.
These items are available only when you select 1 ICMP from
the Protocol list.
If you select Other from the ICMP Message list, you must
enter values in the ICMP Type and ICMP Code fields.
Otherwise, the two fields take the default values, which
cannot be changed.
ICMP Type
ICMP Code