Chapter 4: CLI Management
CLI Management - Security
NGSME24G4S User Manual | 328
Parameters:
<ace_id> : ACE ID (1-256), default: Next available ID
<ace_id_next> : Next ACE ID (1-256), default: Add ACE last
port : Port ACE keyword
<port_list> : Port list or 'all', default: All ports
policy : Policy ACE keyword
<policy> : Policy number (0-255)
<policy_bitmask>: Policy number bitmask (0x0-0xFF)
<tagged> : Tagged of frames: any|enable|disable
<vid> : VLAN ID (1-4095) or 'any'
<tag_prio> : VLAN tag priority (0-7) or 'any'
<dmac_type> : DMAC type:
any|unicast|multicast|broadcast
etype : Ethernet Type keyword
<etype> : Ethernet Type: 0x600 - 0xFFFF or 'any' but
excluding 0x800(IPv4) 0x806(ARP) and 0x86DD(IPv6)
<smac> : Source MAC address ('xx-xx-xx-xx-xx-xx'
or 'xx.xx.xx.xx.xx.xx' or 'xxxxxxxxxxxx', x is a hexadecimal
digit) or 'any'
<dmac> : Destination MAC address
('xx-xx-xx-xx-xx-xx' or 'xx.xx.xx.xx.xx.xx' or 'xxxxxxxxxxxx', x is
a hexadecimal digit) or 'any'
arp : ARP keyword
<sip> : Source IP address (a.b.c.d/n) or 'any'
<dip> : Destination IP address (a.b.c.d/n) or 'any'
<arp_opcode> : ARP operation code: any|arp|rarp|other
<arp_flags> : ARP flags: request|smac|tmac|len|ip|ether
[0|1|any]
ip : IP keyword
<protocol> : IP protocol number (0-255) or 'any'
<ip_flags> : IP flags: ttl|options|fragment [0|1|any]
icmp : ICMP keyword
<icmp_type> : ICMP type number (0-255) or 'any'
<icmp_code> : ICMP code number (0-255) or 'any'
udp : UDP keyword
<sport> : Source UDP/TCP port range (0-65535) or