D-Link DXS-3600-16S Manual page 31

Dxs-3600 series layer 2/3 managed 10gbe switch
Hide thumbs Also See for DXS-3600-16S:
Table of Contents

Advertisement

icmp-message
flow-label flow-label
Default
Command Mode
Command Default Level
Usage Guideline
Example
DXS-3600-32S#configure terminal
DXS-3600-32S(config)#ip access-list extended ext_ipv6
DXS-3600-32S(config-ext-nacl)#deny tcp host 19:18:43::12 120:16:10::/48 eq ftp
DXS-3600-32S(config-ext-nacl)#permit any any
DXS-3600-32S(config-ext-nacl)#end
DXS-3600-32S#show access-lists
Extended IPv6 access list ext_ipv6
10 deny tcp host 19:18:43::12 120:16:10::/48 eq ftp
20 permit any any
DXS-3600-32S#
3-7 mac access-list
This command is used to create or modify an extended MAC ACL. This command will enter into the extended MAC
access-list configuration mode. Use the no command to remove an extended MAC access-list.
mac access-list extended {[id | name]}
no mac access-list extended {id | name}
Parameters
id
name
Default
Command Mode
Command Default Level
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide
(Optional) Specifies the ICMP message type name or the ICMP message type and
code by name. Names that can be used are 'beyond-scope', 'destination-
unreachable', 'echo-reply', 'echo-request', 'erroneous_header', 'hop-limit', 'multicast-
listener-query', 'multicast-listener-done', 'multicast-listener-report', 'nd-na', 'nd-ns',
'next-header', 'no-admin', 'no-route', 'packet-too-big', 'parameter-option', 'parameter-
problem', 'port-unreachable', 'reassembly-timeout', 'redirect', 'renum-command',
'renum-result', 'renum-seq-number', 'router-advertisement', 'router-renumbering',
'router-solicitation', 'time-exceeded', 'unreachable'.
(Optional) Specifies the flow label value used. This value must be between 0 and
1048575.
None.
IPv6 Access-list Configuration Mode.
Level: 12
A sequence number will be assigned automatically if the user did not assign it
manually. Automatic assignment of sequence numbers start from 10, and increases
by 10 for every new entry.
This example shows how to use the IPv6 ACL. The purpose is to deny FTP access
from the host, with the IPv6 address of 19:18:43::12, to any host in the network
120:16:10::/48 and to permit any others.
Specifies the ID number of the extended MAC ACL. This value must be between
6000 and 7999.
Specifies the name of the extended MAC ACL to be configured. The name can be up
to 32 characters long.
None.
Global Configuration Mode.
Level: 12
23

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents