Zte ZXR10 2900E series Configuration Manual page 96

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E series:
Table of Contents

Advertisement

ZXR10 2900E Series Configuration Guide
Command
zte(hybrid-acl-group)#
deny} ipv6 icmp {<source-ipv6addr><sipv6-mask>|
any}[<destination-ipv6addr><dipv6-mask>| any][<vlan-id>]
zte(hybrid-acl-group)#
zte(cfg)#
zte(cfg)#
zte(ingress-user-define-acl)#
deny}[ udb1 <udb-value>< udb-mask>][ udb2 <udb-value><
udb-mask>][ udb3 <udb-value>< udb-mask>][ udb4 <udb-value><
udb-mask>][ udb5 <udb-value>< udb-mask>][ udb6 <udb-value><
udb-mask>][ udb7 <udb-value>< udb-mask>][ udb8<udb-value><
udb-mask>][ udb9 <udb-value>< udb-mask>][ udb10 <udb-value><
udb-mask>][ udb11 <udb-value>< udb-mask>][ udb12
<udb-value>< udb-mask>][ udb13 <udb-value>< udb-mask>][
udb14 <udb-value>< udb-mask>][ udb15 <udb-value>< udb-mask>]
zte(cfg)#
zte(cfg)#
zte(global-acl-group)#
{<1-28>| any}<ip-protocol>{<source-ipaddr><sip-mask>| any}{<d
estination-ipaddr><dip-mask>| any}[dscp <0-63>][fragment][cos
<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(global-acl-group)#
{<1-28>| any} ip {<source-ipaddr><sip-mask>| any}{<destina
tion-ipaddr><dip-mask>| any}[dscp <0-63>][fragment][cos
<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(global-acl-group)#
{<1-28>| any} tcp {<source-ipaddr><sip-mask>| any}[source-port
<0-65535><sport-mask>]{<destination-ipaddr><dip-mask>| any}[d
est-port <0-65535><dport-mask>][dscp <0-63>][fragment][cos
<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
SJ-20130731155059-002|2013-11-27 (R1.0)
rule <1-500>{permit |
rule <1-500>{permit | deny} all
clear ingress-acl hybrid number <300-399>
config ingress-acl user-define number <801-828>
rule <1-500>{permit |
clear ingress-acl user-define number <801-828>
config ingress-acl global
rule <1-16>{permit | deny} port
rule <1-500>{permit | deny} port
rule <1-500>{permit | deny} port
5-48
ZTE Proprietary and Confidential
Function
Sets the rule that a hybrid ingress
ACL is used to match IPv6 ICMP
packets.
Sets the rule that a hybrid ingress
ACL is used to match any packet.
Clears a hybrid ingress ACL
instance.
Creates and configures a
user-defined ingress ACL
instance.
Defines a rule in a user-defined
ingress ACL.
Deletes a user-defined ingress
ACL instance.
Enters and configures a global
ingress ACL instance.
Sets the rule that a global ingress
ACL matches specified fields of
IPv4 packets.
Sets the rule that a global ingress
ACL matches IPv4 packets.
Sets the rule that a global ingress
ACL matches IPv4–TCP packets.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents