10
454 Nokia Network Voyager for IPSO 4.0 Reference Guide
Table 27 ACL Rule Attributes
Attribute Description
Action A rule action can be one of the following six actions:
• Accept—Forward this traffic stream.
• Drop—Silently drop all traffic belonging to this stream.
• Reject—Drop all traffic in this stream and attempt to deliver an ICMP error to the source.
• Skip—Skip this rule proceed to next.
• Shape—Coerce the throughput of this traffic according to a set of parameters given by an
aggregation class.
• Prioritize—Give this traffic stream preferential scheduling on output. When you configure
an ACL rule to use the prioritize action, you must configure an Aggregation Class (AGC).
Aggregation Class This link takes you to the Traffic Condition Configuration page, where you can view and
modify existing rate shaping aggregation class configurations on the system. It also allows
you to add new aggregation classes or to delete existing aggregation classes from the
system.
Source IP Address Specifies the source IP address to be used for matching this rule.
Source Mask Length Specifies the source filter mask length to be used for matching this rule.
Destination IP Address Specifies the destination IP address to be used for matching this rule.
Destination Mask
Length
Specifies the destination filter mask length to be used for matching this rule.
Source Port Range Specifies the source port range to be used for matching this rule.
You can specify the Source Port Range only if the selected protocol is either “any,” 6, TCP,
17, or UDP.
Destination Port Range
Specifies the destination port range to be used for matching this rule.
You can specify the Destination Port Range only if the selected protocol is either
"any," 6, TCP, 17, or UDP.
Protocol Specifies the IP protocol to be used for matching this rule.
Range: 0-255 or any
Default: Any
TCP-Establishment flag When it is selected, traffic matches this rule when it is part of the initial TCP handshake. This
option applies only to IPv4 ACLs.
You can specify the TCP Establishment flag only if the selected protocol is TCP, 6, or "any."
Type of Service (TOS)
for IPv4
Traffic Class for IPv6
Specifies the type of service to be used for matching this rule.
Range: any or 0x0-0xff
Default: Any