Access Control List (Acl) Commands - D-Link DAS-3636 Cli Reference Manual

Vdsl2 switch release 1.00
Table of Contents

Advertisement

The Switch implements Access Control Lists that enable the Switch to deny network access to specific devices or device groups
based on IP settings and MAC address.
The access profile commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in the
following table.
Note: The ACL command set has been changed for the Release III firmware. In particular, note the
different role of the profile_id and access_id parameters. The new treatment has changed some of
the command parameters as well.
Command
create access_profile
delete access_profile
DAS-3600 Series Ethernet over VDSL Switch CLI Reference Manual
A
Parameters
profile_id <value 1-1024> profile_name <name 1-32>[ethernet{ vlan {mask <hex 0x0-
0x0fff>} | source_mac <macmask 000000000000-ffffffffffff> |
<macmask 000000000000-ffffffffffff> | 802.1p | ethernet_type} (1) | ipv4 {
<hex 0x0-0x0fff>} | source_ip_mask <netmask> |
dscp | [ icmp {type | code } |
dst_port_mask <hex 0x0-0xffff> |
udp {src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff>} |
protocol_id_mask <hex 0x0-0xff> {user_define_mask <hex 0x0-0xffffffff>} ]}(1) |
packet_content_mask { destination_mac <macmask> | source_mac <macmask> |
outer_tag <hex 0x0-0x0fff> | offset1 [l2 | l3 | l4] <value 0-127> <hex 0x0-0xff> | offset2 [l2 |
l3 | l4] <value 0-127> <hex 0x0-0xff> | offset3 [l2 | l3 | l4] <value 0-127> <hex 0x0-0xff> |
offset4 [l2 | l3 | l4] <value 0-127> <hex 0x0-0xff> | offset5 [l2 | l3 | l4] <value 0-127> <hex
0x0-0xff> | offset6 [l2 | l3 | l4] <value 0-127> <hex 0x0-0xff> } (1) | ipv6 { class | flowlabel |
source_ipv6_mask <ipv6mask> | destination_ipv6_mask <ipv6mask> | [ tcp
{ src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff>} | udp { src_port_mask
<hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff> } ]} (1) ]
[ profile_id <value 1-1024> | all | profile_name <name 1-32 > ]
C
CCESS
ONTROL
igmp {type } | tcp {src_port_mask <hex 0x0-0xffff> |
flag_mask [ all | {urg | ack | psh | rst | syn | fin} (1)] } |
396
L
(ACL) C
IST
destination_mac
destination_ip_mask <netmask> |
38
OMMANDS
vlan {mask

Advertisement

Table of Contents
loading

Table of Contents