Forum Discussion
chuck_16066
Nimbostratus
Jan 25, 2010Packet filter and port range
I need to do packet filter rules with a dynamic port range like 1024 - 65535. However, the packet filter rule does not take the TCPDUMP format of:
( dst portrange 1024-65535 )
...
hoolio
Cirrostratus
Jan 27, 2010Hi Chuck,
iRules can only be applied on VIPs. So if you had a default SNAT, a NAT, or other non-VIP object handling the traffic an iRule wouldn't allow you to restrict access.
You might try opening a case with F5 Support and ask whether there is a way to specify a port range with packet filters. If not, they should be able to open a request for enhancement.
Aaron
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects