permit
Configure a filter to pass IP packets meeting the filter criteria.
C-Series, E-Series, S-Series, Z-Series, S4810
Syntax
permit {ip |
ip-protocol-number
} {
source mask
| any | host
ip-
address
} {
destination mask
| any | host
ip-address
} [count
[byte] | log] [dscp
value
] [order] [monitor] [fragments]
To remove this filter, you have two choices:
•
Use the
no seq
sequence-number
command if you know the filter’s sequence
number.
•
Use the
no deny {ip |
ip-protocol-number
} {
source mask
| any
| host
ip-address
} {
destination mask
| any | host
ip-
address
}
command.
Parameters
ip
Enter the keyword
ip
to configure a generic IP access list. The
keyword
ip
specifies that the access list will permit all IP protocols.
ip-protocol-
number
Enter a number from 0 to 255 to permit based on the protocol
identified in the IP protocol header. The S4810 range is 0 to 128.
source
Enter the IP address in dotted decimal format of the network from
which the packet was sent.
mask
(OPTIONAL) Enter a network mask in /prefix format (/x) or A.B.C.D.
The mask, when specified in A.B.C.D format, may be either
contiguous or non-contiguous.
any
Enter the keyword
any
to specify that all routes are subject to the
filter.
host
ip-address
Enter the keyword
host
and then enter the IP address to specify a
host IP address or hostname.
destination
Enter the IP address of the network or host to which the packets are
sent.
count
(OPTIONAL) Enter the keyword
count
to count packets processed
by the filter.
byte
(OPTIONAL) Enter the keyword
byte
to count bytes processed by
the filter.
log
(OPTIONAL, E-Series only) Enter the keyword
log
to enter ACL
matches in the log.
dscp
(OPTIONAL) Enter the keyword
dcsp
to match to the IP DCSCP
values.
order
(OPTIONAL) Enter the keyword
order
to specify the QoS priority for
the ACL entry. The range is 0 to 254 (where 0 is the highest priority
and 254 is the lowest; lower order numbers have a higher priority). If
you do not use the keyword
order
, the ACLs have the lowest order
by default (255).
263
Summary of Contents for Force10 S4810P
Page 1: ...FTOS Command Line Reference Guide for the S4810 System FTOS 9 1 0 0 ...
Page 48: ...48 ...
Page 62: ...62 ...
Page 92: ...92 ...
Page 102: ...102 ...
Page 202: ...202 ...
Page 216: ...216 ...
Page 334: ...334 ...
Page 564: ...564 ...
Page 570: ...570 ...
Page 594: ...594 ...
Page 632: ...632 ...
Page 642: ...642 ...
Page 662: ...662 ...
Page 670: ...Related Commands clear ip dhcp snooping clears the contents of the DHCP binding table 670 ...
Page 688: ...688 ...
Page 702: ...702 ...
Page 712: ...712 ...
Page 723: ...Related Commands show gvrp displays the GVRP configuration 723 ...
Page 724: ...724 ...
Page 736: ...736 ...
Page 900: ...900 ...
Page 934: ...934 ...
Page 958: ...958 ...
Page 966: ...966 ...
Page 1018: ...1018 ...
Page 1026: ...1026 ...
Page 1086: ...1086 ...
Page 1100: ...1100 ...
Page 1116: ...1116 ...
Page 1164: ...1164 ...
Page 1268: ...1268 ...
Page 1276: ...1276 ...
Page 1286: ...1286 ...
Page 1300: ...1300 ...
Page 1376: ...1376 ...
Page 1390: ...1390 ...
Page 1460: ...1460 ...
Page 1512: ...1512 ...
Page 1518: ...1518 ...
Page 1528: ...1528 ...
Page 1538: ...1538 ...
Page 1552: ...1552 ...
Page 1572: ...1572 ...
Page 1612: ...1612 ...