System Administration Guide: IP Services

ProcedureHow to View the Inactive Packet Filtering Rule Set

  1. Assume a role that includes the IP Filter Management rights profile, or become superuser.

    You can assign the IP Filter Management rights profile to a role that you create. To create the role and assign the role to a user, see Configuring RBAC (Task Map) in System Administration Guide: Security Services.

  2. View the inactive packet filtering rule set.


    # ipfstat -I -io
    

Example 25–2 Viewing the Inactive Packet Filtering Rule Set

The following example shows output from the inactive packet filtering rule set.


# ipfstat -I -io
pass out quick on dmfe1 all
pass in quick on dmfe1 all