Action objects

Using the Action objects button, you define actions that the IPv6 firewall runs when a filter is true.

Click on Add... to create a new action.

You can set the following properties for the object:

Name
Specifies the name of the object.
Count
When this limit is exceeded, the firewall performs the action.
Unit
Determines the unit for the limits. Select the corresponding value in the drop-down menu.
Time
Determines the measurement period that the firewall applies to the limit. Select the corresponding value in the drop-down menu.
Context
Determines the context that the firewall applies to the limit. Select the corresponding value in the drop-down menu.
Reset counter
If you enable this option, the firewall resets the counter after running the action.
Note: You can only activate this option if you selected "absolute" in the time value.
Common counter
If you enable this option, the firewall adds all action triggers together in one counter.
Note: You can only activate this option if you selected "per station" or "global" in the Context value.
Action
Determines the action the firewall performs when the limit is reached. The following options are possible:
  • Reject: The firewall rejects the data packet and sends an appropriate notification to the sender.
  • Drop: The firewall discards the data packet without notification.
  • Transmit: The Firewall accepts the data packet.
Mark with DiffServ-CP
Determines the priority of the data packets (differentiated services, DiffServ), with which the firewall should transfer the data packets.
Note: You can only activate this option if you selected "transmit" in the Action value.
Note: Further information about DiffServ CodePoints is available in the Reference Manual under the section "QoS".
DiffServ-CP value
Determines the value for the Differentiated Services Code Point (DSCP).
Note: You can only activate this option if you selected "Value" in Mark with DiffServ-CP.
Conditions
Determines which conditions must be met in order for the action to be performed. The item Conditions is used to specify any conditions.
Further measures
Determines which trigger actions the firewall should start in addition to filtering the data packets. You can specify trigger actions under the Further measures.