Hitachi GR2000 Series Network Router User Manual


 
Hitachi Gigabit Router GR2000 Series Enhanced Version Configuration Commands, Vol. 2
1-36 GR2K-GA-0014
Ver. 07-02
Input Examples
1. Setting the filter flow information
Designation of relay and/or discard
Designate relaying the packets with the transmitter IP address being
10.10.10.2, the high-order protocol being TCP and the destination port
number being 23 (telnet). Designate other packets to be discarded.
Designation of policy routing
Output packets with transmitter IPv4 addresses being 10.10.10.2 from the
interface with the interface name of Osaka making the next hop address
10.10.20.20.
Table 1-28 Packet Type in which the Filtering Based on the Flag (ACK and SYN)
Conditions of TCP Header Is Limited in Use
Packet Type Limited Filtering Item
IPv4 packet generated by this router IPv4 packets do not match the filter list, to which
"-ack_check" or "-syn_check" is set, in conditions. In other
words, both ACK and SYN flags are searched for filtering
as if packet 0 were input.
Packet applied to the conditions below among the
IPv4 packets relayed by this router:
(1) Packet with option (IP header)
The same as described above.
Packet applied to the conditions below among the
IPv4 packets relayed by this router:
(2) Packet requiring fragmentation
(3) Packet requiring redirection
(4) Packet in which ARP has not been solved
The packets to be discarded are properly discarded when
they conform to the filtering conditions.
The packets to be relayed do not match the filter list, to
which "-ack_check" or "-syn_check" is set, in conditions
when they conform to the filtering conditions. In other
words, both ACK and SYN flags are searched for filtering
as if packet 0 were input.