set firewall filter sequence from ip value

set firewall filter sequence from ip value

To configure a filter sequence to match packets based on DSCP or IP Precendence values, use the set firewall filter sequence from ip value command in L2/L3 configuration mode.

Command Syntax

set firewall filter filter-name sequence number from ip value value

delete firewall filter filter-name sequence number from ip

Parameters

filter-name

Filter name.

number

Filter sequence number. The range is 0-9999.

value

DSCP or IP Precendence value, according to the trust mode configured with the set firewall filter sequence from ip trust-mode command. The range is 0-7 for IP Precedence, and 0-63 for DSCP.

Examples

The following example configures the trust mode for sequence 2 of MyFilter filter to DSCP. The DSCP value used to match packets is then set to 2.

admin@Switch# set firewall filter MyFilter sequence 2 from ip trust-mode dscp admin@Switch# set firewall filter MyFilter sequence 2 from ip value 2

The following example removes the trust mode and DSCP value from sequence 2 of MyFilter filter:

admin@Switch# delete firewall filter MyFilter sequence 2 from ip Deleting: > ip { > trust-mode: "dscp" > value: 2 > } OK

Copyright © 2025 Pica8 Inc. All Rights Reserved.