The following command specifies any ICMP packet except type 1 code 2 for rule 5 in access
control list 321:
Gxxx-001(ACL 321/ip rule 5)# no icmp 1 2
Specifying TCP establish bit
About this task
This procedure is applicable to access control lists only.
Procedure
1. To specify that the rule only applies to packets that are part of an established TCP
session (a session in with the TCP ACK or RST flag is set), use the
tcp
established
command.
2. Enter
no tcp established
to specify that the rule applies to all TCP packets.
In either case, the command also sets the IP protocol parameter to TCP.
Example
The following command specifies that rule 6 in access control list 301 only matches packets
that are part of an established TCP session:
Gxxx-001(ACL 301/ip rule 6)# tcp established
Specifying fragments
Procedure
Enter
fragment
to apply the rule to non-initial fragments.
You cannot use the
fragment
command in a rule that includes UDP or TCP source
or destination ports.
Gxxx-001(super-ACL 301/ip rule 5)# fragment
Done!
Gxxx-001(super-ACL 301/ip rule 5)#
Specifying DSCP
Procedure
1. Enter
dscp
, followed by a DSCP value (from 0 to 63), to apply the rule to all packets
with the specified DSCP value.
Policy lists
Administering Avaya G430 Branch Gateway
October 2013 573
Summary of Contents for G430
Page 1: ...Administering Avaya G430 Branch Gateway Release 6 3 03 603228 Issue 5 October 2013 ...
Page 12: ...12 Administering Avaya G430 Branch Gateway October 2013 ...
Page 246: ...VoIP QoS 246 Administering Avaya G430 Branch Gateway October 2013 Comments infodev avaya com ...
Page 556: ...IPSec VPN 556 Administering Avaya G430 Branch Gateway October 2013 Comments infodev avaya com ...