标签:
语法:<Protocol name><Direction><Host(s)><Value><Logical operations><Expressions>
例子:
怎么看待<Logical operations>
<Protocol name><Direction><Host(s)><Value>
称为一个组或者表达式<Expressions>
<Logical operations>
是链接多个表达式<Expressions1><Logical operations><Expressions2><Logical operations><Expressions3>……
<Protocol name><Direction><Host(s)><Value><Logical operations>
- protocol可选值:ether, fddi, ip, arp, rarp, decnet, lat, tcp。默认为全部协议
- direction可选值:src, dst, src and dst, src or dst。默认为src or dst
- host(s)可选值:net, port, host, portrange。默认为host,如src 110.119.112.114等价于src host 110.119.112.114
- Logical可选值:not, and, or;
运算优先级:否("not")具有最高的优先级,或("or")和与("and")具有相同的优先级;
运算顺序:从左至右
语法:<protocol>.<string1>.<string2>.<comparison operator><value> <Logical operators> <expressions>
例子:
标签:
原文地址:http://www.cnblogs.com/XBlack/p/5021832.html