R3166-R3206-HP High-End Firewalls Access Control Configuration Guide-6PW101

7
Figure 6 Advanced ACL rule configuration page
Table 5 Advanced ACL rule configuration items
Item Descri
p
tion
Rule ID
Select the Rule ID check box and type a number for the rule.
If you do not specify the rule number, the system will assign one
automatically.
IMPORTANT:
If the rule already exists, the configuration overwrites the old rule.
Operation
Select the operation to be performed for packets matching the rule.
Permit: Allows matching packets to pass.
Deny: Denies matching packets.
Time Range
Select a time range for the rule.
If you select None, the rule will be always effective.
Available time ranges are configured by selecting Resource > Time
Range from the navigation tree.
Non-first Fragments Only
Select this check box to apply the rule to only non-first fragments. If you do
no select this check box, the rule applies to all fragments and
non-fragments.
Logging
Select this check box to log matching IPv4 packets.
A log entry contains the ACL rule number, action on the matching
packets, protocol over the IP, source/destination address,
source/destination port number, and number of matching packets.