
Chapter 19 Application Patrol
ZyWALL (ZLD) CLI Reference Guide
163
19.2.2 Rule Commands for Pre-defined Applications
This table lists the commands for rules in each pre-defined application.
19.2.2.1 Rule Sub-commands
The following table describes the sub-commands for several application patrol rule
commands. Note that not all rule commands use all the sub-commands listed here.
app protocol_name mode {portless | portbase} Specifies how the ZyWALL identifies this
application.
[no] app protocol_name log [alert] Creates log entries (and alerts) for the specified
application. The
no command does not create any
log entries.
Table 78 app Commands: Pre-Defined Applications (continued)
COMMAND DESCRIPTION
Table 79 app Commands: Rules in Pre-Defined Applications
COMMAND DESCRIPTION
app protocol_name rule insert rule_number Creates a new rule at the specified row and enters
sub-command mode. See Table 80 on page 163 for
the sub-commands.
app protocol_name rule append Creates a new rule, appends it to the end of the list,
and enters sub-command mode. See Table 80 on
page 163 for the sub-commands.
app protocol_name rule rule_number
or
app protocol_name rule modify rule_number
Enters sub-command mode for editing the rule at
the specified row. See Table 80 on page 163 for the
sub-commands.
app protocol_name rule default
or
app protocol_name rule modify default
Enters sub-command mode for editing the default
rule for the application. See Table 80 on page 163
for the sub-commands.
no app protocol_name rule rule_number Deletes the specified rule.
Table 80 app protocol rule Sub-commands
COMMAND DESCRIPTION
access {forward | drop | reject} Specifies the action when traffic matches the rule.
[no] action-block
{login|message|audio|video|file-transfer}
Blocks use of a specific feature.
[no] activate Turns on this rule. The
no command turns off this
rule.
bandwidth {inbound|outbound} <0..1048576> Limits inbound or outbound bandwidth, in kilobits
per second. 0 disables bandwidth management for
traffic matching this rule.
[no] bandwidth excess-usage Enables maximize bandwidth usage to let the traffic
matching this policy “borrow” any unused
bandwidth on the out-going interface.
bandwidth priority <1..7> Set the priority for traffic that matches this rule. The
smaller the number, the higher the priority.
[no] destination profile_name Adds the specified destination address to the rule.
[no] from zone_name Specifies the source zone.
Kommentare zu diesen Handbüchern