When you create a policy rule match, you select all parts of a packet header that you want to target and then select the action to perform on the targeted items. These selections are the rules in your match. The match can then be associated with ingress or egress policies. A policy rule match can contain one or more rules.
Note
A policy rule match is a device-specific feature. If you have UDAs configured for a device, UDA-related fields are displayed in the Create Match page. These fields are not described in this procedure.XCO supports a maximum of 6000 IPv4, 2000 IPv6, and 1500 L2/MAC matches for 9920.
To create a policy rule match in the library, see Create a Policy Rule Match in the Library.
Note
All fields are not mandatory. You can leave the fields blank unless noted.The items in this section vary by your selection in the Protocol field. The following list describes all possible selections.
Note
The items in this section vary by your selection in the Type, Sub Type and Protocol fields. The following list describes all possible selections.
The items in this section vary by your selection in the Type, Sub Type and Protocol fields, in particular selection of a Layer4 protocol such as UDP, TCP, or STCP. The following list describes all possible selections.