Using the Action objects button, you define actions that the IPv6 firewall runs when a filter is true.
Click on Add... to create a new action.
You can set the following properties for the object:
- Name
- Specifies the name of the object.
- Count
- When this limit is exceeded, the firewall performs the action.
- Unit
- Determines the unit for the limits. Select the corresponding value in the drop-down menu.
- Time
- Determines the measurement period that the firewall applies to the limit. Select the corresponding value in the drop-down menu.
- Context
- Determines the context that the firewall applies to the limit. Select the corresponding value in the drop-down menu.
- Reset counter
- If you enable this option, the firewall resets the counter after running the action.
Note: You can only activate this option if you selected "absolute" in the time value.
- Common counter
- If you enable this option, the firewall adds all action triggers together in one counter.
Note: You can only activate this option if you selected "per station" or "global" in the Context value.
- Action
- Determines the action the firewall performs when the limit is reached.
The following options are possible:
- Reject: The firewall rejects the data packet and sends an appropriate notification to the sender.
- Drop: The firewall discards the data packet without notification.
- Transmit: The Firewall accepts the data packet.
- Mark with DiffServ-CP
- Determines the priority of the data packets (differentiated services, DiffServ), with which the firewall should transfer the data packets.
Note: You can only activate this option if you selected "transmit" in the Action value.Note: Further information about DiffServ CodePoints is available in the Reference Manual under the section "QoS".
- DiffServ-CP value
- Determines the value for the Differentiated Services Code Point (DSCP).
Note: You can only activate this option if you selected "Value" in Mark with DiffServ-CP.
- Conditions
- Determines which conditions must be met in order for the action to be performed. The item Conditions is used to specify any conditions.
- Further measures
- Determines which trigger actions the firewall should start in addition to filtering the data packets. You can specify trigger actions under the Further measures.