Ingress-Acl Hybrid Rule Type-Ip - Zte ZXR10 2900E Series Command Reference Manual

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E Series:
Table of Contents

Advertisement

ZXR10 2900E Series Command Reference
Parameter
any (third)
<dest-mac>
<dmac-mask>
any (fourth)
Guidelines
Ip-protocol rule can match IPv4–specified protocol field, source-specified IP, any source
IP, destination-specified IP, any destination IP, DSCP field, IP fragment field, cos field,
VLAN field, source-specified MAC, any source MAC, destination-specified MAC and any
destination MAC.

4.13.27 ingress-acl hybrid rule type-ip

Purpose
This command sets the rule that the hybrid ingress ACL matches the IPv4 packet.
Command Mode
Hybrid ingress ACL configuration mode
Syntax
rule <1-500>{permit | deny} ip {<source-ipaddr><sip-mask>| any}{<destination-ipaddr><dip-m
ask>| any}[dscp <0-63>][fragment][cos <0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac
-mask>| any][<dest-mac><dmac-mask>| any]
Parameter Description
Parameter
<1-500>
permit
deny
IP
<source-ipaddr>
<sip-mask>
SJ-20130731155059-003|2013-11-27 (R1.0)
Description
The any keyword is used as the abbreviation of the source MAC
address 00.00.00.00.00.00 and the mask 00.00.00.00.00.00.
Destination MAC address of the transmitted packet.
Destination MAC mask.
The any keyword is used as the abbreviation of the destination
MAC address 00.00.00.00.00.00 and the mask 00.00.00.00.00.00.
Description
Rule number.
If the condition matches, access is permitted.
If the condition matches, access is denied.
This rule is only valid for IP packet. Other packets ignore this rule.
IP address of the source network or host transmitting packets. It is
a 32-bit IP address expressed in dotted decimal notation.
Source mask and used for source. It is a 32-bit IP address
expressed in dotted decimal notation.
4-234
ZTE Proprietary and Confidential

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents