Zte ZXR10 2900E series Configuration Manual page 99

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E series:
Table of Contents

Advertisement

Command
zte(egress-hybrid-acl)#
source-ipaddr>< sip-mask>| any}[ ssourrce-porrtt < 0-65535><
sport-mask>]{< destination-ipaddr>< dip-mask>| any}[ desstt-porrtt
< 0-65535>< dport-mask>][ dsscp < 0-63>][ fragment][ coss
< 0-7>][< vlan-id>[< vlan-mask>]][< source-mac>< smac-mask>|
any][< dest-mac>< dmac-mask>| any]
zte(egress-hybrid-acl)#
source-ipaddr>< sip-mask>| any}[ ssourrce-porrtt < 0-65535><
sport-mask>]{< destination-ipaddr>< dip-mask>| any}[ desstt-porrtt
< 0-65535>< dport-mask>][ dsscp < 0-63>][ fragment][ coss
< 0-7>][< vlan-id>[< vlan-mask>]][< source-mac>< smac-mask>|
any][< dest-mac>< dmac-mask>| any]
zte(egress-hybrid-acl)#
{< sender-ipaddr>< sip-mask>| any}{< target-ipaddr>< tip-mask>|
any}[ coss < 0-7>][< vlan-id>[< vlan-mask>]][< source-mac><
smac-mask>| any][< dest-mac>< dmac-mask>| any]
zte(egress-hybrid-acl)#
{[ ettherr-ttype < 1501-65535>][ coss < 0-7>][< vlan-id>[<
vlan-mask>]][< source-mac>< smac-mask>| any][< dest-mac><
dmac-mask>| any]}
zte(egress-hybrid-acl)#
iipv6 < ip-protocol>{< source-ipv6addr>< sipv6-mask>| any}[<
destination-ipv6addr>< dipv6-mask>| any][< vlan-id>]
zte(egress-hybrid-acl)#
tcp {< source-ipv6addr>< sipv6-mask>| any}[ ssourrce-porrtt <
0-65535>< sport-mask>][< destination-ipv6addr>< dipv6-mask>|
any][ desstt-porrtt < 0-65535>< dport-mask>][< vlan-id>]
zte(egress-hybrid-acl)#
udp {< source-ipv6addr>< sipv6-mask>| any}[ ssourrce-porrtt <
0-65535>< sport-mask>][< destination-ipv6addr>< dipv6-mask>|
any][ desstt-porrtt < 0-65535>< dport-mask>][< vlan-id>]
zte(egress-hybrid-acl)#
{< source-ipv6addr>< sipv6-mask>| any}[< destination-ipv6addr><
dipv6-mask>| any][< vlan-id>]
zte(egress-hybrid-acl)#
zte(cfg)#
zte(cfg)#
<0-3>[offset <0-31>][data-length<1-6>]
SJ-20130731155059-002|2013-11-27 (R1.0)
rule < 1-500>{ permit | deny} tcp {<
rule < 1-500>{ permit | deny} udp {<
rule < 1-500>{ permit | deny} arp
rule < 1-500>{ permit | deny} any
rule < 1-500>{ permit | deny}
rule < 1-500>{ permit | deny} ipv6
rule < 1-500>{ permit | deny} ipv6
rule < 1-500>{ permit | deny} ipv6 any
rule < 1-500>{ permit | deny} all
clear egress-acl hybrid number < 700-799>
config ingress-acl user-define udb <1-15> anchor
Chapter 5 Service Configuration
5-51
ZTE Proprietary and Confidential
Function
Sets a hybrid egress ACL that
matches IPv4-TCP packets.
Sets a hybrid egress ACL that
matches IPv4-UDP packet.
Sets a hybrid egress ACL that
matches ARP packets.
Sets a hybrid egress ACL that
matches non-IPv6 packet
Sets a hybrid egress ACL that
matches specified fields of IPv6
packets.
Sets a hybrid egress ACL that
matches IPv6-TCP packets.
Sets a hybrid egress ACL that
matches IPv6-UDP packets.
Sets a hybrid egress ACL that
matches IPv6 packets.
Sets a hybrid egress ACL that
matches any packet.
Clears a hybrid egress ACL
instance.
Sets a user-defined anchor and
offset.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents