Command Reference ACL Commands
Transmission Control Protocol (TCP)
[
sn
] deny udp {
source
source
–wildcard
|
host
source
|
any
} [
operator
port
[
port
]] {
destination
destination-wildcard
|
host
destination
|
any
} [
operator
port
[
port
]] [
precedence
precedence
] [
tos
tos
] [
fragment
] [
range
lower
upper
] [
time-range
time-range-name
]
User Datagram Protocol (UDP)
[
sn
] deny udp {
source
source
–wildcard
|
host
source
|
any
} [
operator
port
[
port
]] {
destination
destination-wildcard
|
host
destination
|
any
} [
operator
port
[
port
]] [
precedence
precedence
] [
tos
tos
] [
fragment
] [
range
lower
upper
] [
time-range
time-range-name
]
7.
Extended MAC ACL
[
sn
]
deny
{
any
|
host
source-mac-address
} {
any
|
host
destination-mac-address
} [
ethernet-typ
e
]
[
cos
[
out
] [
inner
in
] ]
8.
Extended expert ACL
[
sn
]
deny
[
protocol
| [
ethernet-type
][
cos
[
out
] [
inner
in
]]] [[
VID
[
out
][
inner
in
]]] {
source
source-wildcard
|
host
source
|
any
}{
host
source-mac-address
|
any
} {
destination
destination-wildcard
|
host
destination
|
any
} {
host
destination-mac-address
|
any
} [
precedence
precedence
] [
tos
tos
][
fragment
] [
range
lower
upper
] [
time-range
time-range-name
]
When you select the ethernet-type field or cos field:
[
sn
]
deny
{[
ethernet-type
}[
cos
[
out
] [
inner
in
]]} [[
VID
[
out
][
inner
in
]]] {
source
source-wildcard
|
host
source
|
any
} {
host
source-mac-address
|
any
} {
destination
destination-wildcard
|
host
destination
|
any
} {
host
destination-mac-address
|
any
} [
time-range
time-range-name
]
When you select the protocol field:
[
sn
]
deny protocol
[[
VID
[
out
][
inner
in
]]] {
source
source-wildcard
|
host
source
|
any
} {
host
source-mac-address
|
any
} {
destinationdestination-wildcard
|
host
destination
|
any
} {
host
destination-mac-address
|
any
} [
precedence
precedence
] [
tos
tos
] [
fragment
] [
range
lower
upper
]
[
time-range
time-range-name
]
Extended expert ACLs of some important protocols
Internet Control Message Protocol
(ICMP)
[
sn
]
deny icmp
[[
VID
[
out
][
inner
in
]]] {
source source-wildcard
|
host
source
|
any
} {
host
source-mac-address
|
any
} {
destination
destination-wildcard
|
host
destination
|
any
} {
host
destination-mac-address
|
any
} [
icmp-type
] [[
icmp-type
[
icmp-code
]] | [
icmp-message
]] [
precedence
precedence
] [
tos
tos
] [
fragment
] [
time-range
time-range-name
]
Transmission Control Protocol
(TCP)
[
sn
]
deny tcp
[[
VID
[
out
][
inner
in
]]]{
source
source-wildcard
|
host
Source
|
any
} {
host
source-mac-address
|
any
} [
operator
port
[
port
]] {
destination
destination-wildcard
|
host
destination
|
any
} {
host
destination-mac-address
|
any
} [
operator
port
[
port
]] [
precedence
precedence
] [
tos
tos
]
[
fragment
] [
range
lower
upper
] [
time-range
time-range-name
] [
match-all
tcp-flag |
established
]
User Datagram Protocol
(UDP)
[
sn
]
deny udp
[[
VID
[
out
][
inner
in
]]]{
source
source
–wildcard
|
host
source
|
any
} {
host
source-mac-address
|
any
} [
operator
port
[
port
]] {
destination
destination-wildcard
|
host
destination
|
any
}{
host
destination-mac-address
|
any
} [
operator
port
[
port
]] [
precedence
precedence
] [
tos
tos
]
[
fragment
] [
range
lower
upper
] [
time-range
time-range-name
]
Address Resolution Protocol
(ARP)
[
sn
]
deny arp
{
vid
vlan-id
}[
host
source-mac-address
|
any
] [
host
destination
–mac-address
|
any
]
{
sender-ip sender-ip
–wildcard
|
host
sender-ip
|
any
} {
sender-mac sender-mac-wildcard
|
host
Содержание RG-S29 Series
Страница 1: ...RG S29 Series Switch RGOS Command Reference Release 11 4 1 B12...
Страница 10: ...Command Reference Command Line Interface Commands Platform Description N A...
Страница 93: ...Command Reference Line Commands Description...
Страница 236: ...Command Reference PoE Management Commands Related Commands Command Description N A N A Platform Description N A...
Страница 248: ...Command Reference PKG_MGMT Commands...
Страница 332: ...Command Reference Protocol VLAN Commands Commands N A N A Platform Description...
Страница 350: ...Command Reference Voice VLAN Commands Description...
Страница 430: ...Command Reference LLDP Commands Description...
Страница 467: ...Command Reference ERPS Commands Commands N A N A Platform Description N A...
Страница 541: ...Command Reference IPv6 Commands Platform Description N A...
Страница 858: ...Command Reference NSM Commands Description N A N A Defaults N A Command Mode Privileged EXEC mode Usage guideline N A...
Страница 914: ...Multicast Commands 1 IPv4 Multicast Routing Commands 2 IGMP Snooping Commands...
Страница 1092: ...Configuration Guide SCC Commands Platforms N A...
Страница 1196: ...Configuration Guide IPv6 Source Guard Commands Platform Description N A...
Страница 1290: ...ACL QoS Configuration Commands 1 ACL Commands 2 QoS Commands...