ZXR10 2900E Series Command Reference
Parameter
Description
<
source-ipaddr
>
IP address of the source network or host transmitting packets. It is
a 32-bit IP address expressed in dotted decimal notation.
<
sip-mask
>
Source mask used for sources. It is a 32-bit IP address expressed
in dotted decimal notation.
any
(first)
The any keyword is used as the abbreviation of the source 0.0.0.0
and the source mask 0.0.0.0.
<
destination-ipaddr
>
Destination network or host of the transmitted packet. It is a 32-bit
IP address expressed in dotted decimal notation.
<
dip-mask
>
Destination mask used for destination. It is a 32-bit IP address
expressed in dotted decimal notation.
any
(second)
The any keyword is used as the abbreviation of the destination
0.0.0.0 and the destination mask 0.0.0.0
dscp
<
0-63
>
This rule is only valid for messages with the specified DSCP
value. Ignore this rule for other messages. The range of the
Differentiated Services Code Point (DSCP) value is 0 to 63.
fragment
This rule is only valid for fragment messages. For non-fragment
messages, this rule is ignored.
Guidelines
The IP-protocol rule can match IPv4 protocol fields with specified source IP addresses,
any source IP address, specified destination IP addresses, any destination IP address,
DSCP fields, or IP fragment fields.
4.13.13 ingress-acl extend rule type-icmp
Purpose
This command sets the rule that the extended ingress ACL is used to match ICMP
messages.
Command Mode
Extended ingress ACL configuration mode
Syntax
rule
<
1-500
>{
permit
|
deny
}
icmp
{<
source-ipaddr
><
sip-mask
>|
any
}{<
destination-ipaddr
><
di
p-mask
>|
any
}[
icmp-type
<
0-254
><
icmp-code
>][
dscp
<
0-63
>][
fragment
]
4-220
SJ-20130731155059-003|2013-11-27 (R1.0)
ZTE Proprietary and Confidential