Parameters
sequence-
number
Enter a number from 0 to 4294967290.
deny
Enter the keyword
deny
to configure a filter to drop packets
meeting this condition.
permit
Enter the keyword
permit
to configure a filter to forward
packets meeting this criteria.
ip-protocol-
number
Enter a number from 0 to 255 to filter based on the protocol
identified in the IP protocol header.
icmp
Enter the keyword
icmp
to configure an ICMP access list filter.
ip
Enter the keyword
ip
to configure a generic IP access list. The
keyword
ip
specifies that the access list permits all IP protocols.
tcp
Enter the keyword
tcp
to configure a TCP access list filter.
udp
Enter the keyword
udp
to configure a UDP access list filter.
source
Enter an IP address in dotted decimal format of the network
from which the packet was received.
mask
(OPTIONAL) Enter a network mask in /prefix format (/x) or
A.B.C.D. The mask, when specified in A.B.C.D format, may be
either contiguous or non-contiguous.
any
Enter the keyword
any
to specify that all routes are subject to
the filter.
host
ip-address
Enter the keyword
host
and then enter the IP address to specify
a host IP address or hostname.
operator
(OPTIONAL) Enter one of the following logical operands:
•
eq
= equal to
•
neq
= not equal to
•
gt
= greater than
•
lt
= less than
•
range
= inclusive range of ports (you must specify two
ports for the
port
parameter.)
port port
(OPTIONAL) Enter the application layer port number. Enter two
port numbers if you are using the range logical operand. The
range is from 0 to 65535.
The following list includes some common TCP port numbers:
• 23 = Telnet
• 20 and 21 = FTP
• 25 = SMTP
• 169 = SNMP
Access Control Lists (ACL)
317
Summary of Contents for C9000 series
Page 1: ...Dell Networking Command Line Reference Guide for the C9000 Series Version 9 10 0 0 ...
Page 394: ...deny 14551 666 Dell Access Control Lists ACL 394 ...
Page 877: ...algorithm FIPS Cryptography 877 ...
Page 1297: ...Total 5 0 Total 5 active route s using 952 bytes IPv6 Basics 1297 ...