NGFW{running-dnat-rule-dnat1}description

Apply rule description.

Syntax

description TEXT

Example

NGFW{running-dnat-rule-dnat1}description "destination nat rule"

NGFW{running-dnat-rule-dnat1}dst-address

Apply destination address.

Syntax

dst-address (includeexclude) ipaddress (A.B.C.DA.B.C.D/M) dst-address (includeexclude) range A.B.C.D A.B.C.D dst-address (includeexclude) group ADDRESSGROUP

Example

NGFW{running-dnat-rule-dnat1}dst-address include ipaddress 192.168.1.0/24 NGFW{running-dnat-rule-dnat1}dst-address exclude ipaddress 192.168.1.1 NGFW{running-dnat-rule-dnat1}dst-address include range 192.168.1.100 192.168.1.200

NGFW{running-dnat-rule-dnat1}move

Move rule position.

Syntax

move after DSTNATRULEID move before DSTNATRULEID move to position VALUE

Example

NGFW{running-dnat-rule-dnat1}move after dnat1

NGFW{running-dnat-rule-dnat1}move before dnat1

NGFW{running-dnat-rule-dnat1}move to position 1

NGFW{running-dnat-rule-dnat1}src-address

Apply source address.

Syntax

src-address (includeexclude) ipaddress (A.B.C.DA.B.C.D/M) src-address (includeexclude) range A.B.C.D A.B.C.D src-address (includeexclude) group ADDRESSGROUP

Example

NGFW{running-dnat-rule-dnat1}src-address include ipaddress 192.168.1.0/24 NGFW{running-dnat-rule-dnat1}src-address exclude ipaddress 192.168.1.1 NGFW{running-dnat-rule-dnat1}src-address include range 192.168.1.100 192.168.1.200

NGFW{running-dnat-rule-dnat1}src-zone

Apply source security zone.

NGFW Command Line Interface Reference 133

Page 141
Image 141
HP TippingPoint Next Generation Firewall manual NGFWrunning-dnat-rule-dnat1move Move rule position Syntax