Create policy labels
-
You can use “goto” expressions to point to the next entry in the bank to be evaluated after the current one.
-
You can use an entry in a policy bank to invoke another bank.
Create a caching policy label by using the CLI
- add cache policylabel <labelName> -evaluates req|res
- show cache policylabel<labelName>
> add cache policylabel lbl-cache-pol -evaluates req
Done
> show cache policylabel lbl-cache-pol
Label Name: lbl-cache-pol
Evaluates: REQ
Number of bound policies: 0
Number of times invoked: 0
Done
Create a content switching policy label by using the CLI
- add cs policylabel <labelName> http|tcp|rtsp|ssl
- show cs policylabel <labelName>
> add cs policylabel lbl-cs-pol http
Done
> show cs policylabel lbl-cs-pol
Label Name: lbl-cs-pol
Label Type: HTTP
Number of bound policies: 0
Number of times invoked: 0
Done
Create a rewrite policy label by using the CLI
- add rewrite policylabel <labelName> http_req|http_res|url|text|clientless_vpn_req|clientless_vpn_res
- show rewrite policylabel <labelName>
> add rewrite policylabel lbl-rewrt-pol http_req
Done
> show rewrite policylabel lbl-rewrt-pol
Label Name: lbl-rewrt-pol
Transform Name: http_req
Number of bound policies: 0
Number of times invoked: 0
Done
Create a responder policy label by using the CLI
- add responder policylabel <labelName>
- show responder policylabel <labelName>
> add responder policylabel lbl-respndr-pol
Done
> show responder policylabel lbl-respndr-pol
Label Name: lbl-respndr-pol
Number of bound policies: 0
Number of times invoked: 0
Done
Create a policy label by using the GUI
-
In the navigation pane, expand the feature for which you want to create a policy label, and then click Policy Labels. For example, to create a rewrite policy label, navigate to AppExpert > Rewrite and then click Policy Labels.
-
In the details pane, click Add.
-
In the Name box, enter a unique name for this policy label.
-
Enter feature-specific information for the policy label. For example, for rewrite policy label specific information, see Configure a rewrite policy label.
-
Click Create.
-
Configure one of the built-in policy banks to invoke this policy label. For more information, see the Binding a Policy to a Policy Label section. A message in the status bar indicates that the policy label is created successfully.
Bind a policy to a policy label
-
Name. The name of a policy, or, to invoke another policy bank without evaluating a policy, the “dummy” policy name NOPOLICY.You can specify NOPOLICY more than once in a policy bank, but you can specify a named policy only once.
-
Priority. An integer. This setting can work with the Goto expression.
-
Goto Expression. Determines the next policy to evaluate in this bank. You can provide one of the following values:
-
NEXT. Go to the policy with the next higher priority.
-
END. Stop evaluation.
-
USE_INVOCATION_RESULT. Applicable if this entry invokes another policy bank. If the final Goto in the invoked bank has a value of END, evaluation stops. If the final Goto is anything other than END, the current policy bank performs a NEXT.
-
Positive number: The priority number of the next policy to be evaluated.
-
Numeric expression. An expression that produces the priority number of the next policy to be evaluated.
The Goto can only proceed forward in a policy bank.If you omit the Goto expression, it is the same as specifying END. -
-
Invocation Type. Designates a policy bank type. The value can be one of the following:
-
Request Vserver. Invokes request-time policies that are associated with a virtual server.
-
Response Vserver. Invokes response-time policies that are associated with a virtual server.
-
Policy label. Invokes another policy bank, as identified by the policy label for the bank.
-
-
Invocation Name. The name of a virtual server or a policy label, depending on the value that you specified for the Invocation Type.