Updated Date: 07/07/2026
Create a packet filter policy
You can create an IPv6 Packet Filter policy that contains one or more firewall rules. Once created, the policy can be applied to either the global or route domain contexts.
-
On the Main tab, click Security > Packet Filter > Policies.
-
To the right of the page, click Add Policy.
-
Type a Name and optional Description for the policy.
-
To the right of the page, click Add Rule.
-
Type a Name for the rule.
-
From the State list, select either Enabled or Disabled.
-
From the Header Type list, select the appropriate IPv6 header to match. Info: Only one Extension Header can be configured per rule.
-
In the Values text box, type a single EH option ID and click Add. Repeat this step for each option ID. Info: For a range of IDs, use a dash character separator. For example, 0-5.
-
From the Action list, select either Accept or Drop.
-
From the Log list, select either Yes or No. Important: The Packet Filter logging option must also be enabled in the Event Log logging profile.
-
Click Done Editing.
-
Click Commit Changes to System.
The packet filter policy can now be applied to the route domain or global context.