For feedback, use the following:
ipd_online_feedback@alcatel-lucent.com
Table of Contents Previous Next Index PDF


Filter Command Reference
Command Hierarchies
 
Configuration Commands
DHCP Filter Policy Commands
config
dhcp-filter filter-id [create]
no dhcp-filter filter-id
description description-string
entry entry-id [create]
no entry entry-id
action {bypass-host-creation}
action drop
option dhcp-option-number {present | absent}
option dhcp-option-number match hex hex-string [exact] [invert-match]
option dhcp-option-number match string ascii-string [exact] [invert-match]
 
IP Filter Policy Commands
config
ip-filter filter-id [create]
ip-filter {filter-id | filter-name}
no ip-filter filter-id
default-action {drop | forward}
description description-string
embed-filter filter-id [offset offset ] [{active | inactive}]
no embed-filter filter-id
entry entry-id [time-range time-range-name] [create]
no entry entry-id
action [drop]
action forward [next-hop {ip-address | indirect ip-address | interface ip-int-name}]
action forward [redirect-policy policy-name]
action forward [sap sap-id | sdp sdp-id:vc-id]
action http-redirect rdr-url-string
action nat [nat-policy-name]
action reassemble
description description-string
log log-id
match [protocol protocol-id]
dscp dscp-name
dst-ip {ip-address/mask | ip-address netmask | ip-prefix-list prefix-list-name}
dst-port {lt | gt | eq} dst-port-number
dst-port range start end
fragment {true|false|first-only|non-first-only}
icmp-code icmp-code
icmp-type icmp-type
ip-option ip-option-value [ip-option-mask]
multiple-option {true | false}
option-present {true | false}
src-ip{ip-address/mask | ip-address netmask | ip-prefix-list prefix-list-name}
src-port {{lt | gt | eq} src-port-number}
src-port range src-port-number src-port-number
src-route-option {true|false}
tcp-ack {true | false}
tcp-syn {true | false}
filter-name filter-name
group-inserted-entries application application location location
renum old-entry-id new-entry-id
scope {exclusive | template | embedded}
shared-radius-filter-wmark low low-watermark high high-watermark
sub-insert-credit-control start-entry entry-id count count
sub-insert-radius start-entry entry-id count count
sub-insert-shared-radius start-entry entry-id count count
sub-insert-wmark low low-watermark high high-watermark
IPv6 Filter Policy Commands
 
IPv6 Filter Policy Commands
config
ipv6-filter filter-id [create]
ipv6-filter {filter-id | filter-name}
no ipv6-filter filter-id
default-action {drop | forward}
description description-string
embed-filter filter-id [offset offset ] [{active | inactive}]
no embed-filter filter-id
entry entry-id [time-range time-range-name] [create]
no entry entry-id
action [drop]
action forward
action forward next-hop {ipv6-address|indirect ipv6-address}
action http-redirect rdr-url-string
action nat [nat-policy-name]
description description-string
log log-id
match [next-header next-header]
ah-ext-hdr {true | false }
dscp dscp-name
dst-ip {ip-address/mask | ip-address netmask | ip-prefix-list prefix-list-name}
dst-port {lt | gt | eq} dst-port-number
dst-port range start end
esp-ext-hdr {true | false }
fragment {true|false|first-only|non-first-only}
hop-by-hop-opt {true|false}
icmp-code icmp-code
icmp-type icmp-type
routing-type0 {true|false}
src-ip{ip-address/mask | ip-address netmask | ip-prefix-list prefix-list-name}
src-port {lt | gt | eq} src-port-number}
src-port range src-port-number src-port-number
tcp-ack {true | false}
tcp-syn {true | false}
filter-name filter-name
group-inserted-entries application application location location
renum old-entry-id new-entry-id
scope {exclusive | template | embedded}
shared-radius-filter-wmark low low-watermark high high-watermark
sub-insert-credit-control start-entry entry-id count count
sub-insert-radius start-entry entry-id count count
sub-insert-shared-radius start-entry entry-id count count
sub-insert-wmark low low-watermark high high-watermark
Log Filter Commands
config
log log-id [create]
no log log-id
description description-string
destination memory num-entries | syslog syslog-id
destination syslog syslog-id
summary-crit dst-addr
summary-crit src-addr
MAC Filter Commands
config
mac-filter filter-id [create]
mac-filter {filter-id | filter-name}
no mac-filter filter-id
description description-string
entry entry-id [time-range time-range-name]
no entry entry-id [create]
action [drop]
action forward [sap sap-id | sdp sdp-id]
description description-string
log log-id
match [frame-type {802dot3 | 802dot2-llc | 802dot2-snap | ethernet_II}]
dot1p dot1p-value [dot1p-mask]
dsap dsap-value [dsap-mask]
dst-mac ieee-address [ieee-address-mask]
etype 0x0600..0xffff
inner-tag value [vid-mask]
isid value [ to higher-value]
outer-tag value [vid-mask]
snap-oui {zero | non-zero}
snap-pid snap-pid
ssap ssap-value [ssap-mask]
src-mac ieee-address [ieee-address-mask]
renum old-entry-id new-entry-id
scope {exclusive | template}
type filter-type
 
Match Filter List Commands
config
ip-prefix-list ip-prefix-list-name [create]
no ip-prefix-list ip-prefix-list-name
bgp-peers index group reg-exp neighbor reg-exp
description description-string
[no] prefix ip-prefix/prefix-length
ipv6-prefix-list ipv6-prefix-list-name [create]
no ipv6-prefix-list ipv6-prefix-list-name
bgp-peers index group reg-exp neighbor reg-exp
description description-string
[no] prefix ipv6-prefix/prefix-length
port-list port-list-name create
no port-list port-list-name
description description-string
port <<R12.0>> port number
port <<R12.0>> range start end
 
 
Redirect Policy Configuration Commands
config
Redirect policy commands
redirect-policy redirect-policy-name [create]
no redirect-policy redirect-policy-name
description description-string
destination ip-address [create]
no destination ip-address
description description-string
drop-count consecutive-failures [hold-down seconds]
interval seconds
timeout seconds
priority [priority]
snmp-test test-name [create]
no snmp-test test-name
drop-count consecutive-failures [hold-down seconds]
interval seconds
oid oid-string community community-string
return-value return-value type return-type [disable | lower-priority priority | raise-priority priority]
no return-value return-value type return-type
timeout seconds
url-test test-name [create]
no url-test test-name
drop-count consecutive-failures [hold-down seconds]
interval seconds
return-code return-code-1 [return-code-2] [disable | lower-priority priority | raise-priority priority]
no return-code return-code-1 [return-code-2]
timeout seconds
url url-string [http-version version-string]
 
 
Copy Filter Commands
config
copy ip-filter src-filter-id [src-entry src-entry-id] to dst-filter-id [dst-entry dst-entry-id] [overwrite]
copy ipv6-filter src-filter-id [src-entry src-entry-id] to dst-filter-id [dst-entry dst-entry-id] [overwrite]
copy mac-filter src-filter-id [src-entry src-entry-id] to dst-filter-id [dst-entry dst-entry-id] [overwrite]
Show Commands
show
dhcp [filter-id]
ip embedded [inactive]
ip ip-filter-id embedded [inactive]
ip ip-filter-id [detail]
ip ip-filter-id associations
ip ip-filter-id type entry-type
ip ip-filter-id counters [type entry-type]
ip ip-filter-id entry entry-id counters
ip ip-filter-id entry entry-id [detail]
ipv6 embedded [inactive]
ipv6 ipv6-filter-id embedded [inactive]
ipv6 ipv6-filter-id [detail]
ipv6 ipv6-filter-id associations
ipv6 ipv6-filter-id type entry-type
ipv6 ipv6-filter-id counters [type entry-type]
ipv6 ipv6-filter-id entry entry-id counters
ipv6 ipv6-filter-id entry entry-id [detail]
log [bindings]
log log-id [match string]
mac {mac-filter-id [entry entry-id] [association | counters]}
ip-prefix-list [prefix-list-name]
ip-prefix-list prefix-list-name references
ipv6-prefix-list [prefix-list-name]
ipv6-prefix-list prefix-list-name references
port-list [port-list-name]
port-list port-list-name references
redirect-policy {redirect-policy-name [dest ip-address] [association]}
Clear Commands
clear
ip filter-id [entry entry-id] [ingress | egress]
ipv6 filter-id [entry entry-id] [ingress | egress]
log log-id
mac filter-id [entry entry-id] [ingress | egress]
Monitor Commands
monitor
filter ip ip-filter-id entry entry-id [interval seconds] [repeat repeat] [absolute | rate]
filter ipv6 ipv6-filter-id entry entry-id [interval seconds] [repeat repeat] [absolute | rate]
filter mac mac-filter-id entry entry-id [interval seconds] [repeat repeat] [absolute | rate]