<id> | Policy ID number. |
srcaddr <subnet> | Specifies the source subnet for this rule. IPv4 and IPv6 addresses are supported. |
dstaddr <subnet> dstport <port> | Specifies the destination subnet and port for this rule. IPv4 and IPv6 addresses are supported. For the port, you can specify a single port (number), a port label, or all to specify all ports. |
rulenum <rule-number> | Specifies the order in which the rule is consulted: 1-N or start or end. The rule is inserted into the list at the specified position. For example, if you specify rulenum as 3, the new rule will be #3, the old rule #3 becomes #4, and subsequent rules, if any, also move down the list. Specify start for the rule to be the first rule and end for the rule to be the last rule. If you do not specify a rule number, the rule is added to the end of the list. |
description <description> | Specifies a description of the rule. |