Verify packet rules

Always verify your rules before you activate them. This helps ensure that the rules will be activated without problems.

When you verify your packet rules, the system checks them for syntax and semantic errors and reports the results in a message window at the bottom of the Packet Rules Editor. For error messages that are associated with a specific file and line number, you can right-click the error and select Go To Line to highlight the error in the file you are editing.

Before using the verify function, you might want to consider viewing your packet rules to check for visible errors. You cannot activate rules that have syntactical errors. The verify function checks for errors of a syntactical nature. The system can not verify whether you have ordered your rules correctly. You must check for rule order manually. Packet rules are order-dependent, which means that, you must order the rules the way that you want them applied. If you order them incorrectly, you will not get the intended result. Ensure that your rules are correct and ordered the way you want them applied before you activate them.

For instructions on how to verify packet rules, use the Packet Rules Editor online help.

Messages: Whenever you activate your filter rules, the system automatically verifies them. Various warning and error messages might be produced. A warning message is for informational purposes and does not stop the verification process. Read all messages carefully. One message appears saying that your verification and activation were successful. This last sentence can also state that the rule load was unsuccessful if there are severe errors.
Related concepts
Scenario: Map IP addresses using NAT
Scenario: Create filter rules to allow HTTP, Telnet, and FTP
Scenario: Combine NAT and IP filtering
Scenario: Hide IP addresses using masquerade NAT
Related tasks
View packet rules