华为USG防火墙:如何实现在命令行中移动安全策略的顺序

华为USG防火墙:如何实现在命令行中移动安全策略的顺序

图片.png

display security-policy rule  all

图片.png

[USG6000V2]
[USG6000V2]security-policy
[USG6000V2-policy-security]dis this
2022-08-31 06:42:34.960
#
security-policy
 default action permit
 rule name two
  destination-zone untrust
  source-address address-set Net-192.168.2.x
  destination-address address-set 192.168.1.X
  action permit
 rule name one
  destination-zone local
  source-address address-set 192.168.1.X
  action permit
#
return
[USG6000V2-policy-security]
[USG6000V2-policy-security]rule ?
  copy    Indicate copy a rule
  move    Indicate move a rule
  name    Indicate configure rule name
  rename  Indicate rename a rule
[USG6000V2-policy-security]rule move ?
  STRING<1-32>/STRING<3-34>  Specify the rule name should move; the length of
                             the rule name is 1 to 32 bytes, if the rule name
                             contains spaces, the name must be enclosed with
                             double quotation marks, for example, "user for
                             test"
[USG6000V2-policy-security]rule move 1 ?
  after   Indicate move after a rule
  before  Indicate move before a rule
  bottom  Indicate move a rule to the bottom
  down    Indicate move down a rule
  top     Indicate move a rule to the top
  up      Indicate move up a rule
[USG6000V2-policy-security]rule move one up
[USG6000V2-policy-security]dis this
2022-08-31 06:43:20.460
#
security-policy
 default action permit
 rule name one
  destination-zone local
  source-address address-set 192.168.1.X
  action permit
 rule name two
  destination-zone untrust
  source-address address-set Net-192.168.2.x
  destination-address address-set 192.168.1.X
  action permit
#
return

[USG6000V2-policy-security]


可以看到安全策略one已经移动到了前面:

图片.png

图片.png


1、本站资源长期持续更新。
2、本资源基本为原创,部分来源其他付费资源平台或互联网收集,如有侵权请联系及时处理。
3、本站大部分文章的截图来源实验测试环境,请不要在生产环境中随意模仿,以免带来灾难性后果。

转载请保留出处:  www.zh-cjh.com珠海陈坚浩博客 » 华为USG防火墙:如何实现在命令行中移动安全策略的顺序

作者: cjh


手机扫一扫,手机上查看此文章:

一切源于价值!

其他 模板文件不存在: ./template/plugins/comment/pc/index.htm

未雨绸缪、居安思危!

数据安全、有备无患!

注意操作、数据无价!

一切源于价值!