56
6.3.5 Access List Configuration
There are seven functions for access control.
Map: Main
Classifier | Classifier selects packets stream based on the value of combination of one or more header |
| fields such as source IP address, destination IP address, DS field, protocol ID, source port |
| and destination port numbers, and others. |
|
|
Classifier Group | A show group status and allows you to join, remove and set group names. |
|
|
According to traffic profile specification, packets in the traffic stream arrive when tokens are | |
| available in the bucket. It takes action specified in |
| profile. |
|
|
If a classifier were based on one or more header fields that did not select packets, it would | |
| take action specified in |
|
|
Packets in traffic stream arrive when insufficient tokens are available in the bucket take | |
| action specified in |
|
|
Port List | An ingress port handling traffic as it enters one or more ports. |
|
|
Policy | A policy consists of classifier, precedence port list, in /out profile or no match action. When |
| packets enter, a DS domain traffic flow should be conditioned at the DS ingress node of the |
| DS domain according to the appropriate policy. |
|
|