[Contents] [Prev] [Next] [Index] [Report an Error]


Configuring Classifier Control Lists

This section describes how you create classifier control lists and classifier control list entries.

The NMC-RX application allows you to configure up to 512 classifier control list entries per classifier control list. Each classifier control list entry is automatically numbered when created.

Creating a Classifier Control List

You can create and list classifier control lists from the Device-wide Explorer. Double-click Classifier Control List in the Device-wide Explorer to list all classifier control lists defined on the current device.

You can also create and list classifier control lists from the System folder in the Instance Explorer and the Device-wide Explorer.

To create a classifier control list:

  1. From the Device-wide Explorer, select Classifier Control Lists.
  2. Right click, select Create, and click Classifier Control List.

The Create Classifier Control List dialog box appears.

  1. Type the Classifier Control List Name with 1 to 40 characters.
  2. Click OK.

A Creation complete message appears.

  1. Click OK.

Creating a Classifier Control List Entry

Once you have created a classifier control list, you can configure a classifier control list entry.

From the Classifier Control List Entry dialog box, you can specify a protocol or set the IP flag or TCP flag by clicking the appropriate button. Clicking this button displays additional related dialog boxes. Many parameters are available only when a particular protocol is selected. See Table 8 for complete descriptions.

To create a classifier control list entry:

  1. From the Device-wide Explorer, in the Policy Management folder, double-click Classifier Control Lists.

All classifier control lists defined on the current device appear in the list area of the Device Workshop.

  1. Select a classifier control list from the list.
  2. Right-click, select Create, and click Classifier Control List Entry.

The Create Classifier Control List Entry dialog box appears.

  1. Set the parameters (Table 8).
  2. 
    
    
    
    Table 8: Classifier Control List Entry Parameters 
    Parameter
    Description

    List Name

    Identifier of the classifier control list of which this entry is a part; cannot edit

    Entry ID

    Identifier of this entry; value populated from device; cannot edit

    Match Packets with Protocol

    Not

    Indicates that packets matched are not equal to the protocol specified

    Protocol

    Protocol matched (or not) by this classifier list entry; cannot edit; range 0-255

    Click to select a protocol from the Select Protocol dialog box. See Related Dialog Boxes.

    Match Criteria

    IP Frag Offset

    IP fragmentation offset; options: Equal to 0, Equal to 1, Greater than 1, or None

    IGMP Type

    IGMP message type value; editable only when IGMP is the specified protocol; range 1-255

    IP Flags

    IP header flags for classification

    Click to select an IP header flag from the Configure IP Flag dialog box. See Related Dialog Boxes.

    TCP Flags

    Transmission Control Protocol (TCP) header flags for classification. Active only when TCP is selected.

    Click to select a TCP flag from the Configure TCP Flags dialog box. See Related Dialog Boxes.

    ToS Information

    Type

    Specifies how the type of service (ToS) information is set; options: ToS Value, Precedence, DS Field, or None

    Value

    Value set based on type selected.

    • ToS Value—Range 0-255; default 255
    • Precedence—Range 0-7; default 7
    • DS Field—Range 0-63; default 63
    ICMP Information

    Type

    Internet Control Message Protocol (ICMP) message type value; editable only when ICMP is the specified protocol; range 0-255

    Code

    ICMP message code value; editable only when ICMP is the specified protocol; range 0- 255

    Source/Destination Address

    Not

    When checked, indicates that the packets matched have a source or destination address not equal to the specified address

    IP Address

    Source or destination IP address matched (or not) by this classifier list entry; 0.0.0.0 is the wildcard; must be a valid IP address; default 0.0.0.0

    Mask

    Mask to apply to the source or destination address; default 0.0.0.0

    Source/Destination Ports

    Options

    Operation used to match ports to the specified From Port and To Port fields (if appropriate); editable only when TCP or User Datagram Protocol (UDP) is the specified protocol

    Options: no op, less than, greater than, equal to, not equal to, range; default: no op

    From Port

    Source or destination port number used in port comparisons; invalid only for no op; range 1-65535

    To Port

    End source or destination port number used in port range comparisons; valid only for range; range 1-65535

  3. Click OK.

The Creation complete message appears. Note that the classifier control list entry is automatically numbered.

  1. Click OK.

Related Dialog Boxes

This section presents the procedures for setting the classifier control list parameters in the Create Classifier Control List Entry dialog box.

Select Protocol

The Select Protocol dialog box appears when you click next to the Protocol field.

  1. Either click a protocol in the list, or manually specify a different protocol by typing the protocol number in the Selected Protocol box. The range is 0-255.
  2. Click OK.

The protocol you selected appears in the Protocol field in the Create Classifier Control List Entry dialog box.

Configure IP Flags

The Configure IP Flags dialog box appears when you click next to the to the IP Flags field. Use it to select an IP flag.

  1. In the Selected column, select the IP flags that you want as part of the result string.
  2. In the Not column, select the "not" operator(s) that you want applied to the corresponding flag in the result string.

    NOTE: The check box in the Not column cannot be checked unless the check box in the corresponding Selected column is checked first.


  3. Click OK.

The IP flags you selected appear to the right of the IP Flags field in the Classifier Control List Entry dialog box.

Configure TCP Flags

The Configure TCP Flags dialog box appears when you click next to the TCP Flags field. Use it to select a TCP flag.

  1. In the Selected column, select the TCP flags you want as part of the result string.
  2. In the Not column, select the "not" operator(s) that you want applied to the corresponding flag in the result string.

    NOTE: The check box in the Not column cannot be checked unless the check box in the corresponding Selected column is checked first.


  3. Click OK.

The TCP flag you selected appears to the right of the TCP Flags field in the Classifier Control List Entry dialog box.


[Contents] [Prev] [Next] [Index] [Report an Error]