Deny Tcp - Siemens SCALANCE XM-400 Configuration Manual

Simatic net industrial ethernet switches command line interface (cli)
Hide thumbs Also See for SCALANCE XM-400:
Table of Contents

Advertisement

Security and authentication
11.4 IP access control list
Parameter
range
any
host
dest-ip-address
dest-ip-address
dest-mask
dscp
value
ack
rst
For information on names of addresses and interfaces, refer to the section "Interface
identifiers and addresses (Page 42)".
Result
The IP access list for TCP segments has been configured.
Note
Subnet mask for individual hosts
If you create the rule for a single system (one IPv4 address), specify the subnet mask
"255.255.255.255". As an alternative, you can specify the keyword "host" followed by the
IPv4 address.
Further notes
You delete an IP access control list with the
command.
You display the configuration of the access control list with the
11.4.4.6

deny tcp

Description
With this command, you configure an IP access control list for the TCP protocol.
848
Description
Keyword for a range of port numbers.
Following this, the first and last port
number of the range is specified.
Forwards all outgoing TCP segments.
Keyword for a an individual IPv4 ad-
dress
Destination IPv4 address
Network destination address
Corresponding subnet mask
Keyword for the Differentiated Services
Codepoint
Value for the Differentiated Services
Codepoint
Forwards ACK segments.
Forwards RST segments.
no ip access-list standard <acl-num>
SCALANCE XM-400/XR-500 Command Line Interface (CLI)
Range of values / note
-
-
-
Enter a valid IPv4 address.
Enter a valid combination of IPv4
address and subnet mask.
-
0 ... 63
-
-
show access-lists
Configuration Manual, 06/2016, C79000-G8976-C252-11
command.

Advertisement

Table of Contents
loading

Table of Contents