Configuring an ACE destination port

Configure ACE destination port entries to have the filter look for packets with a specific destination port.

Before you begin

  • The ACE exists.

  • The ACL exists.

Procedure

  1. In the navigation tree, expand the following folders: Configuration > Security > Data Path.
  2. Click Advanced Filters (ACE/ACLs).
  3. Click the ACL tab.
  4. Select the appropriate ACL.
  5. Click ACE.
  6. Select the appropriate ACE.
  7. Click Proto.
  8. Click the Destination Port tab.
  9. Click Insert.
  10. Specify the operator for the destination port.
  11. Specify the port number or port list to match.
  12. Click Insert.

Destination Port field descriptions

Use the data in the following table to use the Destination Port tab.

Name

Description

AclId

Specifies the ACL ID.

AceId

Specifies the ACE ID.

Oper

The eq and mask parameters specify an operator for a field match condition: equal to or mask. The mask operator is an implied eq on the mask bits.

Port

Specifies the port number. As noted at the bottom of the tab, potential entries include 0–65535, echo, ftpdata, ftpcontrol, ssh, telnet, dns, http, h.323, and undefined.

OperMask

Specifies the mask parameter, {0-0xFFFF}.