xStack DES-3800 Series Layer 3 Stackable Fast Ethernet Managed Switch CLI Manual
340
config cpu access_profile
•
type <value 0-255>
−
Specifies that the access profile will apply to this ICMP
type value.
•
code <value 0-255>
−
Specifies that the access profile will apply to this ICMP
code.
igmp
−
Specifies that the Switch will examine the Internet Group Management Protocol
(IGMP) field within each packet.
•
type <value 0-255>
−
Specifies that the access profile will apply to packets that
have this IGMP type value.
tcp
−
Specifies that the Switch will examine the Transmission Control Protocol (TCP) field
within each packet.
•
src_port <value 0-65535>
−
Specifies that the access profile will apply only to
packets that have this TCP source port in their TCP header.
•
dst_port <value 0-65535>
−
Specifies that the access profile will apply only to
packets that have this TCP destination port in their TCP header.
protocol_id <value 0-255>
−
Specifies that the switch will examine the Protocol field in
each packet and if this field contains the value entered here, apply the following rules.
udp
−
Specifies that the Switch will examine the User Datagram Protocol (UDP) field
within each packet.
•
src_port <value 0-65535>
−
Specifies that the access profile will apply only to
packets that have this UDP source port in their header.
•
dst_port <value 0-65535>
−
Specifies that the access profile will apply only to
packets that have this UDP destination port in their header.
protocol_id <value 0-255>
−
Specifies that the Switch will examine the protocol field in
each packet and if this field contains the value entered here, apply the following rules.
•
user_define_mask <hex 0x0-0xffffffff>
−
Specifies that the rule applies to the IP
protocol ID and the mask options behind the IP header.
packet_content_mask
– Specifies that the Switch will mask the packet header beginning
with the offset value specified as follows:
•
offset_0-15
- Enter a value in hex form to mask the packet from byte 0 to byte 15.
•
offset_16-31
- Enter a value in hex form to mask the packet from byte 16 to byte
31.
•
offset_32-47
- Enter a value in hex form to mask the packet from byte 32 to byte
47.
•
offset_48-63
- Enter a value in hex form to mask the packet from byte 48 to byte
63.
•
offset_64-79
- Enter a value in hex form to mask the packet from byte 64 to byte
79.
permit | deny
– Specify that the packet matching the criteria configured with command will
either be permitted entry to the CPU or denied entry to the CPU.
delete access_id <value 1-65535> -
Use this to remove a previously created access rule
in a profile ID.
Restrictions
Only Administrator or Operator-level users can issue this command.