Planet Networking & Communication SGS-6340-24T4S Command Manual page 709

Layer 3 multi-port full gigabit stackable managed switch
Table of Contents

Advertisement

Command Mode:
Name standard IP access-list configuration mode
Default:
No access-list configured.
Example:
Permit packets with source address 10.1.1.0/24 to pass, and deny other packets with source address 10.1.1.0/16.
Switch(config)# access-list ip standard ipFlow
Switch(Config-Std-Nacl-ipFlow)# permit 10.1.1.0 0.0.0.255
Switch(Config-Std-Nacl-ipFlow)# deny 10.1.1.0 0.0.255.255
40.20 permit | deny(ipv6 extended)
Command:
[no] {deny | permit} icmp {{<sIPv6Prefix/sPrefixlen>} | any-source | {host-source <sIPv6Addr>}}
{<dIPv6Prefix/dPrefixlen> | any-destination | {host-destination <dIPv6Addr>}} [<icmp-type> [<icmp-code>]]
[dscp <dscp>] [flow-label <fl>][time-range <time-range-name>]
[no] {deny | permit} tcp { <sIPv6Prefix/sPrefixlen> | any-source | {host-source <sIPv6Addr> }} [s-port
{ <sPort> | range <sPortMin> <sPortMax> }] { <dIPv6Prefix/dPrefixlen> | any-destination | {host-destination
<dIPv6Addr> }} [d-port { <dPort> | range <dPortMin> <dPortMax> }] [syn | ack | urg | rst | fin | psh] [dscp
<dscp> ] [flow-label <fl> ][time-range <time-range-name> ]
[no] {deny | permit} udp { <sIPv6Prefix/sPrefixlen> | any-source | {host-source <sIPv6Addr> }} [s-port
{ <sPort> | range <sPortMin> <sPortMax> }] { <dIPv6Prefix/dPrefixlen> | any-destination | {host-destination
<dIPv6Addr> }} [d-port { <dPort> | range <dPortMin> <dPortMax> }] [dscp <dscp> ] [flow-label
<fl> ][time-range <time-range-name> ]
[no] {deny | permit} <next-header> {<sIPv6Prefix/sPrefixlen> | any-source | {host-source <sIPv6Addr>}}
{<dIPv6Prefix/dPrefixlen> | any-destination | {host-destination <dIPv6Addr>}} [dscp <dscp>] [flow-label
<fl>][time-range <time-range-name>]
[no] {deny | permit} {<sIPv6Prefix/sPrefixlen> | any-source | {host-source <sIPv6Addr>}}
{<dIPv6Prefix/dPrefixlen> | any-destination | {host-destination <dIPv6Addr>}} [dscp <dscp>] [flow-label <fl>]
[time-range<time-range-name>]
Function:
Create an extended nomenclature IPv6 access control rule for specific IPv6 protocol.
40-157

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents