HP VPN Firewall Appliances Access Control Command Reference

Table Of Contents
69
content-filter policy-template-name: Specifies a content filtering policy template by its name for a rule.
The policy-template-name argument is a case-sensitive string of 1 to 32 characters.
logging: Logs matching packets.
time-range time-range-name: Specifies a time range for the rule. The time-range-name argument is a
case-insensitive string of 1 to 32 characters and must start with an English letter. If the specified time
range is not configured, the system creates the rule. However, the rule using the time range can take effect
only after you configure the timer range.
Usage guidelines
For an interzone instance, the interzone policy rule configuration and the interzone policy group
configuration are mutually exclusive.
When you use the rule command:
If the specified rule ID does not exist, you create the new rule.
If the specified rule ID already exists, you edit the attributes of the rule.
Within an interzone policy, the permit or deny statement of each rule must be unique. If the interzone
policy rule you are creating or editing has the same deny or permit statement as another rule in the policy,
your creation or editing attempt fails.
Examples
# Create an interzone policy rule that permits all packets for the interzone instance with source zone
office and destination zone library, and enter the view of the rule.
<Sysname> system-view
[Sysname] interzone source office destination library
[Sysname-interzone-office-library] rule permit
[Sysname-interzone-office-library-rule-0]
Related commands
rule acl
rule accelerate
Use rule accelerate to enable interzone policy acceleration.
Use undo rule accelerate to disable interzone policy acceleration.
Syntax
rule accelerate
undo rule accelerate
Default
Interzone policy acceleration is disabled.
Views
Interzone instance view
Default command level
2: System level
Parameters
None