C613-50102-01 REV C
Command Reference for x510 Series
1389
AlliedWare Plus™ Operating System - Version 5.4.6-1.x
IP
V
4 H
ARDWARE
A
CCESS
C
ONTROL
L
IST
(ACL) C
OMMANDS
ACCESS
-
LIST
(
HARDWARE
IP
NUMBERED
)
Syntax [tcp|udp]
access-list <
3000-3699
>
{copy-to-cpu|copy-to-mirror|send-to-mirror|deny|permit|send-to
-cpu} {tcp|udp}
<source>
{eq <
sourceport
>|lt
<
sourceport
>|gt
<
sourceport
>|ne
<
sourceport
>|
[range <
start-range
> <
end-range
>}
<destination>
[eq
<destport>
|lt
<destport>
|gt
<destport>
|ne
<destport>
]|[range
<
start-range
> <
end-range
>]
no access-list <
3000-3699
>
<
type-number
>
The ICMP type, as defined in RFC792 and RFC950. Specify one of
the following integers to create a filter for the ICMP message
type:
0
Echo replies.
3
Destination unreachable messages.
4
Source quench messages.
5
Redirect (change route) messages.
8
Echo requests.
11
Time exceeded messages.
12
Parameter problem messages.
13
Timestamp requests.
14
Timestamp replies.
15
Information requests.
16
Information replies.
17
Address mask requests.
18
Address mask replies.
Table 36:
Parameters in the
access-list (hardware IP numbered)
command -
ip|icmp (cont.)
Parameter
Description
Table 37:
Parameters in the
access-list (hardware IP numbered)
command -
tcp|udp
Parameter
Description
<
3000-3699
>
Hardware IP access-list.
copy-to-cpu
Specify packets to copy to the CPU.
copy-to-mirror
Specify packets to copy to the mirror port.
send-to-mirror
Specify packets to send to the mirror port.
deny
The access-list rejects packets that match the type, source, and
destination filtering specified with this command.