< Home

profile (security policy rule view)

Function

The profile command references a security profile in the security policy rule.

The undo profile command deletes a security profile from the security policy rule.

Format

profile { aapt | app-control | av | data-filter | dns-filter | file-block | ips | mail-filter | url-filter | casa | aie } name

undo profile { aapt | all | app-control | av | data-filter | dns-filter | file-block | ips | mail-filter | url-filter | casa | aie }

Parameters

Parameter Description Value

aapt

Indicates the APT defense profile.

NOTE:

Only the USG6510E/6510E-POE does not support this parameter.

-

app-control

Indicates the application behavior control profile.

-

av

Indicates the antivirus profile.

-

data-filter

Indicates the data filtering profile.

-

dns-filter

Indicates the DNS filtering profile.

-

file-block

Indicates the file blocking profile.

-

ips

Indicates the intrusion prevention profile.

-

mail-filter

Indicates the mail filtering profile.

-

url-filter

Indicates the URL filtering profile.

-

casa

Indicates the configuration file of cloud access security awareness.

-

aie

Indicates the configuration file of artificial intelligence engine.

NOTE:

For versions earlier than V600R007C20SPC300, only the USG6615E/6625E and USG6575E-B/6605E-B support this parameter. For V600R007C20SPC300 and later versions, the USG6610E/6620E, USG6630E/6650E, USG6635E/6655E, USG6680E and USG6712E/6716E also support this parameter.

-

name

Specifies the name of a security profile.

The specified security profile must exist.

all

Indicates all security profiles.

-

Views

Security policy rule view

Default Level

2: Configuration level

Usage Guidelines

The security profile is referenced in the security policy rule to inspect the content of the traffic that matches the security policy rule (the action is permit). To inspect the content of the traffic that matches a security policy rule, reference a security profile in the security policy rule.

The security profile referenced using the profile command takes effect only after the corresponding license is activated.

Example

# Reference intrusion prevention profile profile_ips in security policy rule policy_sec.

<sysname> system-view
[sysname] security-policy
[sysname-policy-security] rule name policy_sec
[sysname-policy-security-rule-policy_sec] profile ips profile_ips
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >