Configure an ACE Destination Port

Configure ACE destination port entries to have the filter look for packets with a specific destination port.

Before you begin

  • The ACE exists.

  • The ACL exists.

Procedure

  1. In the navigation pane, expand Configuration > Security > Data Path.
  2. Select Advanced Filters (ACE/ACLs).
  3. Select the ACL tab.
  4. Select the appropriate ACL.
  5. Select ACE.
  6. Select the appropriate ACE.
  7. Select Proto.
  8. Select the Destination Port tab.
  9. Select Insert.
  10. Specify the operator for the destination port.
  11. Specify the port number or port list to match.
  12. Select Insert.

Destination Port Field Descriptions

Use the data in the following table to use the Destination Port tab.

Name

Description

AclId

Specifies the ACL ID.

AceId

Specifies the ACE ID.

Oper

The eq and mask parameters specify an operator for a field match condition: equal to or mask. The mask operator is an implied eq on the mask bits.

Port

Specifies the port number. As noted at the bottom of the tab, potential entries include 0–65535, echo, ftpdata, ftpcontrol, ssh, telnet, dns, http, h.323, and undefined.

OperMask

Specifies the mask parameter, {0-0xFFFF}.