Apple Mac OS X Server Network Card User Manual


 
Chapter 14 Working with Network Services 233
ipfilter:rules:_array_id:1111:readOnly = yes
ipfilter:rules:_array_id:1111:source-port = ""
Control-D
ipfilter Rules Array
An array of the following settings is included in the ipfilter settings for each defined
firewall rule. In an actual list of settings, <rule> is replaced with a rule number. You can
add a rule by using serveradmin to create such an array in the firewall settings (see
“Adding Rules Using serveradmin” on page 232).
Firewall serveradmin Commands
You can use the following commands with the serveradmin tool to manage the firewall
service.
Parameter (ipfilter:) Description
rules:_array_id:<rule>:
source
The source of traffic governed by the rule.
rules:_array_id:<rule>:
protocol
The protocol for traffic governed by the rule.
rules:_array_id:<rule>:
destination
The destination of traffic governed by the rule.
rules:_array_id:<rule>:
action
The action to be taken.
rules:_array_id:<rule>:
enabled
Whether the rule is enabled.
rules:_array_id:<rule>:
log
Whether activation of the rule is logged.
rules:_array_id:<rule>:
readOnly
Whether read-only is set.
rules:_array_id:<rule>:
source-port
The source port of traffic governed by the rule.
Command
(
ipfilter:command=) Description
getLogPaths Find the current location of the log used by the service.
Default =
/var/log/system.log
getStandardServices
Retrieve a list of the standard services as they appear on the
General pane of the Firewall service settings in the Server Admin
application.
writeSettings Equivalent to the standard serveradmin settings command,
but also returns a setting indicating whether the service needs to
be restarted. See “Using the serveradmin Tool” on page 48.