R3721-F3210-F3171-HP High-End Firewalls Network Management Configuration Guide-6PW101

Table Of Contents
524
Table 73 Configuration items
Item Descri
p
tion
Policy Name
Enter a policy name.
IMPORTANT:
Any spaces entered at the beginning or end of a policy name will be ignored. A
policy name containing only spaces is considered as null.
Node Index
Enter a node index of the policy.
The node with a smaller number has a higher priority and is matched first.
Matching Mode
Select a matching mode for the node.
permit—If a packet satisfies all the criteria defined by the if-match clauses, the
packet is permitted and the apply clauses are executed. Otherwise, the packet
will go to the next policy node for a match.
deny—When a packet satisfies all the criteria defined by if-match clauses on
the policy node, the packet is rejected and will not go to the next policy node.
Minimum Length
Define an IP packet length match criterion.
IMPORTANT:
To create a packet length match criterion, both the minimum and maximum packet
lengths must be set. Leaving either of the boxes blank will delete the match criterion.
Maximum Length
Matched ACL
Enter an ACL number.
Preference
Enter an IP packet preference.
There are totally eight (in the range 0 to 7) preference levels, as shown in Table
74.
Next Hop
Enter the nexthop IP address.
Default Next Hop
Enter the default nexthop IP address.
Outbound Interface
Enter the outbound interface, which is available for P2P links only.
Default Outbound
Interface
Enter the default outbound interface, which is available for P2P links only.
Table 74 IP preference values and keywords
Preference value Ke
y
word
0 routine
1 priority
2 immediate
3 flash
4 flash-override
5 critical
6 internet
7 network