D-Link xStackTM DGS-3300 User Manual page 220

Xstack dgs/dxs-3300 series layer 3 stackable gigabit ethernet switch
Table of Contents

Advertisement

xStack DGS/DXS-3300 Series Layer 3 Stackable Gigabit Ethernet Switch CLI Manual
create access_profile (IP)
Purpose
Used to create an access profile on the Switch by examining the IP
part of the packet header. Masks entered can be combined with the
values the Switch finds in the specified frame header fields. Specific
values for the rules are entered using the config access_profile
command, below.
Syntax
create access_profile ip {vlan | source_ip_mask <netmask> |
destination_ip_mask <netmask> | dscp | [icmp {type | code} |
igmp {type} | tcp {src_port_mask <hex 0x0-0xffff> |
dst_port_mask <hex 0x0-0xffff> | flag_mask [all | {urg | ack | psh
| rst | syn | fin}]} | udp {src_port_mask <hex 0x0-0xffff> |
dst_port_mask <hex 0x0-xffff>} | protocol_id {user _mask <hex
0x0-0xffffffff>}]} profile_id <value 1-8>}
Description
This command will allow the user to create a profile for packets that
may be accepted or denied by the Switch by examining the IP part of
the packet header. Specific values for rules pertaining to the IP part
of the packet header may be defined by configuring the config
access_profile command for IP, as stated below.
Parameters
ip - Specifies that the Switch will look into the IP fields in each packet
with special emphasis on one or more of the following:
vlan − Specifies a VLAN mask.
source_ip_mask <netmask> − Specifies an IP address mask
for the source IP address.
destination_ip_mask <netmask> − Specifies an IP address
mask for the destination IP address.
dscp − Specifies that the Switch will examine the DiffServ
Code Point (DSCP) field in each frame's header.
icmp − Specifies that the Switch will examine the Internet
Control Message Protocol (ICMP) field in each frame's header.
type − Specifies that the Switch will examine each frame's
ICMP Type field.
code − Specifies that the Switch will examine each frame's
ICMP Code field.
igmp − Specifies that the Switch will examine each frame's
Internet Group Management Protocol (IGMP) field.
type − Specifies that the Switch will examine each frame's
IGMP Type field.
tcp − Specifies that the Switch will examine each frames
Transport Control Protocol (TCP) field.
src_port_mask <hex 0x0-0xffff> − Specifies a TCP port
mask for the source port.
dst_port_mask <hex 0x0-0xffff> − Specifies a TCP port
mask for the destination port.
217

Advertisement

Table of Contents
loading

Table of Contents