seq
Assign a sequence number to a deny or permit filter in an extended IP access list while creating the filter.
C-Series, E-Series, S-Series, Z-Series, S4810
Syntax
seq
sequence-number
{deny | permit} {
ip-protocol-number
| icmp
| ip | tcp | udp} {
source mask
| any | host
ip-address
}
{
destination mask
| any | host
ip-address
} [
operator port
[
port
]] [count [byte] | log] [dscp
value
] [order] [monitor]
[fragments]
Parameters
sequence-
number
Enter a number from 0 to 4294967290. For the S4810, the range is 0 to
65534.
deny
Enter the keyword
deny
to configure a filter to drop packets meeting
this condition.
permit
Enter the keyword
permit
to configure a filter to forward packets
meeting this criteria.
ip-protocol-
number
Enter a number from 0 to 255 to filter based on the protocol identified
in the IP protocol header.
icmp
Enter the keyword
icmp
to configure an ICMP access list filter.
ip
Enter the keyword
ip
to configure a generic IP access list. The
keyword
ip
specifies that the access list permits all IP protocols.
tcp
Enter the keyword
tcp
to configure a TCP access list filter.
udp
Enter the keyword
udp
to configure a UDP access list filter.
source
Enter a IP address in dotted decimal format of the network from
which the packet was received.
mask
(OPTIONAL) Enter a network mask in /prefix format (/x) or A.B.C.D.
The mask, when specified in A.B.C.D format, may be either
contiguous or non-contiguous.
any
Enter the keyword
any
to specify that all routes are subject to the
filter.
host
ip-address
Enter the keyword
host
and then enter the IP address to specify a
host IP address or hostname.
operator
(OPTIONAL) Enter one of the following logical operands:
•
eq
= equal to
•
neq
= not equal to
•
gt
= greater than
•
lt
= less than
•
range
= inclusive range of ports (you must specify two ports
for the
port
parameter.)
281
Содержание Force10 S4810P
Страница 1: ...FTOS Command Line Reference Guide for the S4810 System FTOS 9 1 0 0 ...
Страница 48: ...48 ...
Страница 62: ...62 ...
Страница 92: ...92 ...
Страница 102: ...102 ...
Страница 202: ...202 ...
Страница 216: ...216 ...
Страница 334: ...334 ...
Страница 564: ...564 ...
Страница 570: ...570 ...
Страница 594: ...594 ...
Страница 632: ...632 ...
Страница 642: ...642 ...
Страница 662: ...662 ...
Страница 670: ...Related Commands clear ip dhcp snooping clears the contents of the DHCP binding table 670 ...
Страница 688: ...688 ...
Страница 702: ...702 ...
Страница 712: ...712 ...
Страница 723: ...Related Commands show gvrp displays the GVRP configuration 723 ...
Страница 724: ...724 ...
Страница 736: ...736 ...
Страница 900: ...900 ...
Страница 934: ...934 ...
Страница 958: ...958 ...
Страница 966: ...966 ...
Страница 1018: ...1018 ...
Страница 1026: ...1026 ...
Страница 1086: ...1086 ...
Страница 1100: ...1100 ...
Страница 1116: ...1116 ...
Страница 1164: ...1164 ...
Страница 1268: ...1268 ...
Страница 1276: ...1276 ...
Страница 1286: ...1286 ...
Страница 1300: ...1300 ...
Страница 1376: ...1376 ...
Страница 1390: ...1390 ...
Страница 1460: ...1460 ...
Страница 1512: ...1512 ...
Страница 1518: ...1518 ...
Страница 1528: ...1528 ...
Страница 1538: ...1538 ...
Страница 1551: ...To display the type of STP guard Portfast BPDU root or loop guard enabled on a port enter the show spanning tree 0 command 1551 ...
Страница 1552: ...1552 ...
Страница 1572: ...1572 ...
Страница 1586: ... uplink state group creates an uplink state group and enables the tracking of upstream links 1586 ...
Страница 1598: ...FTOS config interface vlan 40 FTOS conf if vlan tagged TenGi 8 0 FTOS conf if vlan exit FTOS config 1598 ...
Страница 1612: ...1612 ...