NGFW Command Line Interface Reference 145
delete dst-zone (exclude all|ZONENAME)
delete user (include all|USERNAME)
delete user (exclude all|USERNAME)
delete user-group (include all|IN_GRP_NAME|IN_DN_GRP_NAME)
delete user-group (exclude all|EX_GRP_NAME|EX_DN_GRP_NAME)
Example
NGFW{running-firewall-rule-myrule1}delete application-group
NGFW{running-firewall-rule-myrule1}delete schedule exclude myhours1
NGFW{running-firewall-rule-myrule1}delete schedule include all
NGFW{running-firewall-rule-myrule1}delete services include port all
NGFW{running-firewall-rule-myrule1}delete services include service http
NGFW{running-firewall-rule-myrule1}delete services exclude icmp any
NGFW{running-firewall-rule-myrule1}delete dst-zone include myzone1
NGFW{running-firewall-rule-myrule1}delete src-zone include myzone1
NGFW{running-firewall-rule-myrule1}delete src-address include ipaddress
192.168.1.0/24
NGFW{running-firewall-rule-myrule1}delete dst-address include ipaddress
192.168.1.0/24
NGFW{running-firewall-rule-myrule1}delete services include port tcp 443
NGFW{running-firewall-rule-myrule1}delete user include all
NGFW{running-firewall-rule-myrule1}delete user exclude myuser1
NGFW{running-firewall-rule-myrule1}delete user-group include mygroup
NGFW{running-firewall-rule-myrule1}description
Apply rule description.
Syntax
description TEXT
Example
NGFW{running-firewall-rule-myrule1}description "My Firewall Policy"
NGFW{running-firewall-rule-myrule1}disable
Disable rule.
Syntax
disable
Example
NGFW{running-firewall-rule-myrule1}disable
NGFW{running-firewall-rule-myrule1}dst-address
Apply destination addresses.
Syntax
dst-address (include|exclude) (any4|any6)
dst-address (include|exclude) group ADDRESSGROUP
dst-address (include|exclude) ipaddress (A.B.C.D|X:X::X:X)
dst-address (include|exclude) ipaddress (A.B.C.D/M|X:X::X:X/M)
dst-address (include|exclude) range ((A.B.C.D A.B.C.D)|(X:X::X:X X:X::X:X))
Example
NGFW{running-firewall-rule-myrule1}dst-address exclude ipaddress 192.168.1.1
NGFW{running-firewall-rule-myrule1}dst-address include ipaddress 192.168.1.0/24
Comentarios a estos manuales