summaryrefslogtreecommitdiff
path: root/docs/configuration/firewall/global-options.rst
diff options
context:
space:
mode:
authorrebortg <github@ghlr.de>2024-01-13 23:12:29 +0100
committerrebortg <github@ghlr.de>2024-01-14 21:11:10 +0100
commit14c94be155255524d4e05c1f5308233f8b67be03 (patch)
treed742ee314656029270aa8e7e315b2c2abf3e13e8 /docs/configuration/firewall/global-options.rst
parent0740593f13225ad72a127e99aaa49d5a32ba5325 (diff)
parentad280ba6493a76a73b25ca4472365720b10bd412 (diff)
downloadvyos-documentation-14c94be155255524d4e05c1f5308233f8b67be03.tar.gz
vyos-documentation-14c94be155255524d4e05c1f5308233f8b67be03.zip
Merge branch 'master' of github.com:vyos/vyos-documentation
Diffstat (limited to 'docs/configuration/firewall/global-options.rst')
-rw-r--r--docs/configuration/firewall/global-options.rst34
1 files changed, 32 insertions, 2 deletions
diff --git a/docs/configuration/firewall/global-options.rst b/docs/configuration/firewall/global-options.rst
index 316e0802..b3f311aa 100644
--- a/docs/configuration/firewall/global-options.rst
+++ b/docs/configuration/firewall/global-options.rst
@@ -1,4 +1,4 @@
-:lastproofread: 2023-11-07
+:lastproofread: 2023-12-26
.. _firewall-global-options-configuration:
@@ -114,4 +114,34 @@ Configuration
Enable or Disable VyOS to be :rfc:`1337` conform.
The following system parameter will be altered:
- * ``net.ipv4.tcp_rfc1337`` \ No newline at end of file
+ * ``net.ipv4.tcp_rfc1337``
+
+.. cfgcmd:: set firewall global-options state-policy established action
+ [accept | drop | reject]
+
+.. cfgcmd:: set firewall global-options state-policy established log
+
+.. cfgcmd:: set firewall global-options state-policy established log-level
+ [emerg | alert | crit | err | warn | notice | info | debug]
+
+ Set the global setting for an established connection.
+
+.. cfgcmd:: set firewall global-options state-policy invalid action
+ [accept | drop | reject]
+
+.. cfgcmd:: set firewall global-options state-policy invalid log
+
+.. cfgcmd:: set firewall global-options state-policy invalid log-level
+ [emerg | alert | crit | err | warn | notice | info | debug]
+
+ Set the global setting for invalid packets.
+
+.. cfgcmd:: set firewall global-options state-policy related action
+ [accept | drop | reject]
+
+.. cfgcmd:: set firewall global-options state-policy related log
+
+.. cfgcmd:: set firewall global-options state-policy related log-level
+ [emerg | alert | crit | err | warn | notice | info | debug]
+
+ Set the global setting for related connections.