Chapter 6 Access Control List (Acl) Egress Commands - D-Link xStack DGS-3620 Reference Manual

Hide thumbs Also See for xStack DGS-3620:
Table of Contents

Advertisement

xStack® DGS-3620 Series Layer 3 Managed Stackable Gigabit Switch CLI Reference Guide
Chapter 6 Access Control List
(ACL) Egress Commands
create egress_access_profile profile_id <value 1-4> profile_name <name 1-32> [ethernet {vlan
{<hex 0x0-0x0fff>} | source_mac <macmask 000000000000-ffffffffffff> | destination_mac
<macmask 000000000000-ffffffffffff> | 802.1p | ethernet_type} | ip {vlan {<hex 0x0-0x0fff>} |
source_ip_mask <netmask> | destination_ip_mask <netmask> |dscp | [icmp {type | code} |
igmp {type} | tcp {src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff> |
flag_mask [all | {urg | ack | psh | rst | syn | fin}]} | udp {src_port_mask <hex 0x0-0xffff> |
dst_port_mask <hex 0x0-0xffff>} | protocol_id_mask <hex 0x0-0xff> {user_define_mask <hex
0x0-0xffffffff>}]} | ipv6 {class | source_ipv6_mask <ipv6mask> | destination_ipv6_mask
<ipv6mask> | [tcp {src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff>} | udp
{src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff>} | icmp {type | code}]}]
delete egress_access_profile [profile_id <value 1-4> | profile_name <name 1-32> | all]
config egress_access_profile [profile_id <value 1-4> | profile_name <name 1-32>] [add
access_id [auto_assign | <value 1-128>] [ethernet {[vlan <vlan_name 32> | vlan_id <vlanid 1-
4094>] {mask <hex 0x0-0x0fff>} | source_mac <macaddr> {mask <macmask>} |
destination_mac <macaddr> {mask <macmask>} | 802.1p <value 0-7> | ethernet_type <hex
0x0-0xffff> | mirror} | ip {[vlan <vlan_name 32> | vlan_id <vlanid 1-4094>] {mask <hex 0x0-
0x0fff>} | source_ip <ipaddr> {mask <netmask>} | destination_ip <ipaddr> {mask <netmask>}
| dscp <value 0-63> | [icmp {type <value 0-255> | code <value 0-255>} | igmp {type <value 0-
255>} | tcp {src_port <value 0-65535> {mask <hex 0x0-0xffff>} | dst_port <value 0-65535>
{mask <hex 0x0-0xffff>} | flag [all | {urg | ack | psh | rst | syn | fin}]} | udp {src_port <value 0-
65535> {mask <hex 0x0-0xffff>} | dst_port <value 0-65535> {mask <hex 0x0-0xffff>}} |
protocol_id <value 0-255> {user_define <hex 0x0-0xffffffff> {mask <hex 0x0-0xffffffff>}}] |
mirror} | ipv6 {class <value 0-255> | source_ipv6 <ipv6addr> {mask <ipv6mask>} |
destination_ipv6 <ipv6addr> {mask <ipv6mask>} | [tcp {src_port <value 0-65535> {mask <hex
0x0-0xffff>} | dst_port <value 0-65535> {mask <hex 0x0-0xffff>}} | udp {src_port <value 0-
65535> {mask<hex 0x0-0xffff>} | dst_port <value 0-65535> {mask <hex 0x0-0xffff>}} | icmp
{type <value 0-255> | code <value 0-255>}] | mirror}] [vlan_based [vlan <vlan_name 32> |
vlan_id <vlanid 1-4094>] | port_group [id<value 1-64> | name <name 16>] | port <port>]
[permit {replace_priority_with <value 0-7> | replace_dscp_with <value 0-63> |
replace_vlan_id_with <value 1-4094> | counter [enable | disable]} | deny] {time_range
<range_name 32>} | delete access_id <value 1-128>]
show egress_access_profile {[profile_id <value 1-4> | profile_name <name 1-32>]}
show current_config egress_access_profile
config egress_flow_meter [profile_id <value 1-4> | profile_name <name 1-32>] access_id <value
1-128> [rate <value 0-1048576> {burst_size <value 0-131072>} rate_exceed [drop_packet |
remark_dscp <value 0-63>] | tr_tcm cir <value 0-1048576> {cbs <value 0-131072>} pir <value
0-1048576> {pbs <value 0-131072>} {[color_blind | color_aware]} {conform [permit |
replace_dscp <value 0-63>] {counter [enable | disable]}} exceed [permit {replace_dscp <value
0-63>} | drop] {counter [enable | disable]} violate [permit {replace_dscp <value 0-63>} | drop]
{counter [enable | disable]} | sr_tcm cir <value 0-1048576> cbs <value 0-131072> ebs <value
0-131072> {[color_blind | color_aware]} {conform [permit | replace_dscp <value 0-63>]
{counter [enable | disable]}} exceed [permit {replace_dscp <value 0-63>} | drop] {counter
[enable | disable]} violate [permit {replace_dscp <value 0-63>} | drop] {counter [enable |
disable]} | delete]
show egress_flow_meter {[profile_id <value 1-4> | profile_name <name 1-32>] {access_id
<value1-128>}}
create port_group id <value 1-64> name <name 16>
config port_group [id <value 1-64> | name <name 16>] [add | delete] [<portlist> | all]
delete port_group [id <value 1-64> | name <name 16>]
show port_group {id <value 1-64> | name <name 16>}
128

Advertisement

Table of Contents
loading

Table of Contents