NGFW Command Line Interface Reference 133
NGFW{running-dnat-rule-dnat1}description
Apply rule description.
Syntax
description TEXT
Example
NGFW{running-dnat-rule-dnat1}description "destination nat rule"
NGFW{running-dnat-rule-dnat1}dst-address
Apply destination address.
Syntax
dst-address (include|exclude) ipaddress (A.B.C.D|A.B.C.D/M)
dst-address (include|exclude) range A.B.C.D A.B.C.D
dst-address (include|exclude) group ADDRESSGROUP
Example
NGFW{running-dnat-rule-dnat1}dst-address include ipaddress 192.168.1.0/24
NGFW{running-dnat-rule-dnat1}dst-address exclude ipaddress 192.168.1.1
NGFW{running-dnat-rule-dnat1}dst-address include range 192.168.1.100 192.168.1.200
NGFW{running-dnat-rule-dnat1}move
Move rule position.
Syntax
move after DSTNATRULEID
move before DSTNATRULEID
move to position VALUE
Example
NGFW{running-dnat-rule-dnat1}move after dnat1
NGFW{running-dnat-rule-dnat1}move before dnat1
NGFW{running-dnat-rule-dnat1}move to position 1
NGFW{running-dnat-rule-dnat1}src-address
Apply source address.
Syntax
src-address (include|exclude) ipaddress (A.B.C.D|A.B.C.D/M)
src-address (include|exclude) range A.B.C.D A.B.C.D
src-address (include|exclude) group ADDRESSGROUP
Example
NGFW{running-dnat-rule-dnat1}src-address include ipaddress 192.168.1.0/24
NGFW{running-dnat-rule-dnat1}src-address exclude ipaddress 192.168.1.1
NGFW{running-dnat-rule-dnat1}src-address include range 192.168.1.100 192.168.1.200
NGFW{running-dnat-rule-dnat1}src-zone
Apply source security zone.
Comentarios a estos manuales