F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Access Control Command Reference-6PW100

74
Parameters
ipv6: Enables an interzone policy referencing IPv6 advanced ACLs. If this keyword is not specified, an
interzone policy group referencing IPv4 advanced ACLs is enabled.
The following matrix shows the keywords ipv6 and firewalls and UTM compatibility:
Hardware Ke
y
words com
p
atible
F1000-A-EI/F1000-S-EI Yes
F1000-E Yes
F5000 Yes
Firewall module Yes
U200-A Yes
U200-S No
Examples
# Reference IPv4 advanced ACLs 3001 and 3002 to create an interzone policy for the interzone
instance with source zone office and destination zone library, and enable the interzone policy.
<Sysname> system-view
[Sysname] interzone source office destination library
[Sysname-interzone-office-library] rule acl 3001
[Sysname-interzone-office-library] rule acl 3002
[Sysname-interzone-office-library] rule acl enable
rule enable
Use rule enable to enable an interzone policy rule.
Use undo rule enable to disable an interzone policy rule.
Syntax
rule enable
undo rule enable
Default
An interzone policy rule is disabled.
Views
Interzone policy rule view
Default command level
2: System level
Parameters
None
Usage guidelines
Before enabling an interzone policy rule, make sure the rule has referenced at least one source IP object,
one destination IP object, and one service object.