DGS-3000 Series Layer 2 Managed Gigabit Ethernet Switch CLI Reference Guide
95
permit
- Specify that packets matching the access rule are permitted by the Switch.
priority
- (Optional) Specify that the priority of the packet will change if the packet matches
the access rule.
<value 0-7>
- Enter the priority value here. This value must be between 0 and 7.
replace_priority
- (Optional) Specify that the 802.1p priority of the outgoing packet will be
replaced.
replace_dscp_with
- (Optional) Specify that the DSCP of the outgoing packet is changed
with the new value. If using this action without an action priority, the packet will be sent to
the default TC.
<value 0-63>
- Enter the replace DSCP with value here. This value must be between 0
and 63.
replace_tos_precedence_with
- (Optional) Specify that the IP precedence of the outgoing
packet is changed with the new value. If used without an action priority, the packet is sent
to the default TC.
<value 0-7>
- Enter the replace ToS precedence with value here. This value must be
between 0 and 7.
counter
- (Optional) Specify whether the ACL counter feature is enabled or disabled. This
parameter is optional. The default option is disabled. If the rule is not bound with the
flow_meter, all matching packets are counted. If the rule is bound with the flow_meter, then
the “counter” is overridden.
enable
- Specify that the ACL counter feature will be enabled.
disable
- Specify that the ACL counter feature will be disabled.
mirror
- Specify that packets matching the access rules are copied to the mirror port.
deny
- Specify that packets matching the access rule are filtered by the Switch.
time_range
- (Optional) Specify the name of the time range entry.
<range_name 32>
- Enter the time range name here. This name can be up to 32 characters
long.
delete
- Specify that a profile or a rule will be deleted.
access_id
- Specify the index of the access list entry. The value range is 1-256, but the
supported maximum number of entries depends on the project.
<value 1-256>
- Enter the access ID used here. This value must be between 1 and 256.
Restrictions
Only Administrators, Operators and Power-Users can issue this command.
Example
To configure a rule entry for a packet content mask profile:
DGS-3000-26TC:admin#config access_profile profile_id 3 add access_id
auto_assign packet_content offset_chunk_3 0xF0 port all deny
Command: config access_profile profile_id 3 add access_id auto_assign
packet_content offset_chunk_3 0xF0 port all deny
Success.
DGS-3000-26TC:admin#
show access_profile
6-4
Description
This command is used to display the current access list table.
Summary of Contents for DGS-3000 series
Page 1: ......