Command Line Interface
4-160
4
permit
,
deny
(Extended ACL)
This command adds a rule to an Extended IP ACL. The rule sets a filter condition for
packets with specific source or destination IP addresses, protocol types, source or
destination protocol ports, or TCP control codes. Use the
no
form to remove a rule.
Syntax
[
no
] {
permit | deny
} [
protocol
-
number |
udp
]
{
any
|
source address-bitmask |
host
source
}
{
any
|
destination address-bitmask |
host
destination
}
[
precedence
precedence
] [
dscp
dscp
]
[
source-port
sport
[
end
]] [
destination-port
dport
[
end
]]
[
no
] {
permit | deny
}
tcp
{
any
|
source address-bitmask |
host
source
}
{
any
|
destination address-bitmask |
host
destination
}
[
precedence
precedence
] [
dscp
dscp
]
[
source-port
sport
[
end
]] [
destination-port
dport
[
end
]]
[
control-flag
control-flag
]
•
protocol-number
– A specific protocol number. (Range: 0-255)
•
source
– Source IP address.
•
destination
– Destination IP address.
•
address-bitmask
– Decimal number representing the address bits to match.
•
host
– Keyword followed by a specific IP address.
•
precedence
– IP precedence level. (Range: 0-7)
•
dscp
– DSCP priority level. (Range: 0-63)
•
sport
– Protocol
21
source port number. (Range: 0-65535)
•
dport
– Protocol
21
destination port number. (Range: 0-65535)
•
end
– Upper bound of the protocol port range. (Range: 0-65535)
•
control-flag
– Decimal number (representing a bit string) that specifies flag
bits in byte 14 of the TCP header. (Range: 0-63)
Default Setting
None
Command Mode
Extended ACL
Command Usage
• All new rules are appended to the end of the list.
• Address bitmasks are similar to a subnet mask, containing four integers from
0 to 255, each separated by a period. The binary mask uses 1 bits to indicate
“match” and 0 bits to indicate “ignore.” The bitmask is bitwise ANDed with the
21. Includes TCP, UDP or other protocol types.
Содержание JetNet 5228G Series
Страница 3: ...www edge core com 2 24FE 4G Layer 2 4 Ethernet Switch Management Guide V1 1...
Страница 24: ...Tables xx...
Страница 310: ...Configuring the Switch 3 264 3...
Страница 636: ...Command Line Interface 4 326 4...
Страница 650: ...Glossary Glossary 8...
Страница 656: ...Index 6 Index...
Страница 657: ......
Страница 658: ......