Deny Tcp - Siemens SCALANCE XM-400 Configuration Manual

Simatic net industrial ethernet switches command line interface
Hide thumbs Also See for SCALANCE XM-400:
Table of Contents

Advertisement

Security and authentication
11.4 IP access control list
Parameter
mask
dscp
value
ack
rst
Result
The IP access list for TCP segments has been configured.
Note
Subnet mask for individual hosts
If you create the rule for a single system (one IP address), you will need to specify a 32-Bit
long subnet mask. This is then "255.255.255.255". As an alternative, you can specify the
keyword "host" followed by the IP address.
Further notes
You delete an IP access control list with the
command.
You display the configuration of the access control list with the
11.4.3.6

deny tcp

Description
With this command, you configure an IP access control list for the TCP protocol.
You have the following options:
● All incoming and/or outgoing TCP segments are not forwarded.
● Incoming and/or outgoing TCP segments of a specific host are not forwarded.
● Incoming and/or outgoing TCP segments of hosts of a specific subnet are not forwarded.
● Incoming and/or outgoing TCP segments are not forwarded to specific ports.
508
Description
Corresponding subnet mask
Keyword for the Differentiated Services
Codepoint
Value for the Differentiated Services Codepoint 0 ... 63
Forwards ACK segments.
Forwards RST segments.
Values
IP address and subnet mask.
-
-
-
no ip access-list standard <acl-num>
show access-lists
SCALANCE XM-400/XR-500 Command Line Interface
Configuration Manual, 05/2014, C79000-G8976-C252-07
command.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Scalance xr-500

Table of Contents