Extreme Networks 200 Series Installation And User Manual page 125

Summit 200 series
Table of Contents

Advertisement

Table 32: Access Control List Configuration Commands (continued)
Command
create rate-limit <rule_name>
access-mask <access-mask name>
{dest-mac <dest_mac>}
{source-mac <src_mac>}
{vlan <name>}
{ethertype [IP | ARP | <hex_value>]}
{tos <ip_precedence>
| code-point <code_point>}
{ipprotocol
[tcp|udp|icmp|igmp|<protocol_num>]}
{dest-ip <dest_IP>/<mask length>}
{dest-L4port <dest_port>}
{source-ip <src_IP>/<mask length>}
{source-L4port <src_port> | {icmp-type
<icmp_type>} {icmp-code <icmp_code>}}
{egressport <port>}
{port <port number>}
permit {qosprofile <qosprofile>}
{set code-point <code_point>}
{set dot1p <dot1p_value>}
limit <rate_in_Mbps>
{exceed-action [drop
| set code-point <code_point>}
Summit 200 Series Switch Installation and User Guide
Description
Creates a rate limit. The rule is applied to all
ingress packets. Options include:
<rule_name>—Specifies the rate limit name,
from 1 to 31 characters.
access-mask—Specifies the associated
access mask. Any field specified in the
access mask must have a corresponding
value specified in the rate limit.
dest-mac—Specifies the destination MAC
address.
source-mac—Specifies the source MAC
address.
vlan—Specifies the VLANid.
ethertype—Specify IP, ARP, or the hex
value to match.
tos—Specifies the IP precedence value.
code-point—Specifies the DiffServ code
point value.
ipprotocol—Specify an IP protocol, or the
protocol number
dest-ip—Specifies the IP destination
address and subnet mask. A mask length of
32 indicates a host entry.
dest-L4port—Specify the destination port.
source-ip—Specifies the IP source address
and subnet mask.
source-L4port—Specify the source port.
icmp-type—Specify the ICMP type.
icmp-code—Specify the ICMP code.
egressport—Specify the egress port
port—Specifies the ingress port to which this
rule is applied.
permit—Specifies the packets that match
the access list description are permitted to be
forward by this switch. An optional QoS profile
can be assigned to the access list, so that the
switch can prioritize packets accordingly.
set—Modify the DiffServ code point or the
802.1p value for matching, forwarded,
packets.
limit—Specifies the rate limit
<rate_in_Mbps>—The rate limit.
For 100 Mbps ports, specify a value from 1 to
100 Mbps in 1 Mbps increments.
For 1000 Mbps ports, specify a value from 8
to 1000 Mbps in increments of 8 Mbps.
exceed-action—Action to take for
matching packets that exceed the rate.
Using Access Control Lists
123

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Summit 200-24Summit 200-48

Table of Contents