|
reject <message-type>
|
Discards a packet, sending an ICMP destination unreachable message.
Rejected packets are available for logging and sampling. You can specify one
of the following message types: administratively-prohibited (default), bad-host-tos, bad-network-tos, host-prohibited, host-unknown, host-unreachable, network-prohibited, network-unknown, network-unreachable, port-unreachable, precedence-cutoff, precedence-violation, protocol-unreachable, source-host-isolated, source-route-failed, or tcp-reset. If you specify tcp-reset, a TCP reset is
returned (indicating the end of a TCP flow), if the packet is a TCP packet.
Otherwise, nothing is returned.
|
|
count counter-name
|
Counts the number of packets passing this term. The name can contain
letters, numbers, and hyphens (-), and can be up to 24 characters long. A
counter name is specific to the filter that uses it, so all interfaces that
use the same filter increment the same counter.
|