Cisco Cisco ASR 5000
ACS Ruledef Configuration Mode Commands
▀ dns answer-name
▄ Command Line Interface Reference, StarOS Release 18
828
Usage
Use this command to define rule expressions to match an answer name from the answer section of DNS
response messages.
The answer section of a DNS response may contain more than one answer. A maximum of seven answers
from the response packet are parsed. For the equality expressions (=, contains, starts-with, ends-with) a match
is sought from any of the answers in the packet (up to the first seven answers). For the inequality expressions
(!=, !contains, !starts-with, !ends-with), a non-match is sought from all answers (up to the first seven
answers).
response messages.
The answer section of a DNS response may contain more than one answer. A maximum of seven answers
from the response packet are parsed. For the equality expressions (=, contains, starts-with, ends-with) a match
is sought from any of the answers in the packet (up to the first seven answers). For the inequality expressions
(!=, !contains, !starts-with, !ends-with), a non-match is sought from all answers (up to the first seven
answers).
Example
The following command defines a rule expression to match user traffic for answer name
test
:
dns answer-name = test