Deny - Siemens SCALANCE W770 Series Configuration Manuals

Simatic net industrial wireless lan ieee 802.11n command line interface
Table of Contents

Advertisement

Security and authentication
11.5 IP access control list
11.5.5.2

deny

Description
With this command, you configure an IP access control list. The IP ACL contains a description
of the IP addresses for which the incoming and outgoing frames will not be forwarded.
You have the following options:
● All incoming and/or outgoing frames are not forwarded.
● Incoming and/or outgoing frames of a specific host are not forwarded.
● Incoming and/or outgoing frames of hosts of a specific subnet are not forwarded.
● Incoming and/or outgoing frames of a specific protocol are not forwarded.
Note
Processing order of the lists
The access control lists are processed on the interface in the order in which they were created.
The index number of the access control list is not used for this.
Requirement
You are in the ACL standard configuration mode.
The command prompt is as follows:
cli(config-std-nacl)#
Syntax
Call up the command with the following parameters:
deny { any | <protocol-type (1-255)>} { any | host <src-ip-address>
| <src-ip-address> <mask> } { any | host <dest-ip-address> | <dest-
ip-address> <mask> }[dscp <value (0-63)>]
or
deny { any | host <src-ip-address> | <network-src-ip> <mask> } [{ any
| host <dest-ip-address> | <network-dest-ip> <mask> }]
The parameters have the following meaning:
Parameter
any
protocol-type
type
any
any
host
564
Description
Blocks all protocol types
Keyword for the protocol type
Protocol type
Blocks all protocols.
Blocks all incoming frames
Keyword for a single IP address
SCALANCE W770/W730 acc. to IEEE 802.11n Command Line Interface
Range of values / note
-
-
1 ... 255
-
-
-
Configuration Manual, 09/2017, C79000-G8976-C324-08

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents