Ingress-Acl Global Rule Type-Any - Zte ZXR10 2900E Series Command Reference Manual

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E Series:
Table of Contents

Advertisement

Guidelines
The ARP rule can match sender-specified IP, any sender IP, destination-specified IP,
any destination IP, cos field, VLAN field, source-specified MAC, any source MAC,
destination-specified MAC and any destination MAC. The rule can be bound to one or all
ports.

4.13.44 ingress-acl global rule type-any

Purpose
This command sets the rule that the global ingress ACL matches the non-IPv6 packet.
Command Mode
Global ingress ACL configuration mode
Syntax
rule <1-500>{permit | deny} port {<1-28>| any} any {[ether-type <1501-65535>][cos <0-7
>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>| any][<dest-mac><dmac-mask>| any]}
Parameter Description
Parameter
<1-16>
permit
deny
<1-28>
any (first)
any (second)
ether-type <1501-65535>
cos <0-7>
<vlan-id>
<vlan-mask>
SJ-20130731155059-003|2013-11-27 (R1.0)
Description
Global rule number.
If the condition matches, access is permitted.
If the condition matches, access is denied.
Binds the global rule to a port. Different devices have different
port number ranges. In the syntax, the 2928E device is used as
an example.
Binds the global rule to all ports.
This rule only matches non-IPv6 packet. The IPv6 packet ignores
this rule.
This rule is only valid for the packet with specified ether-type.
Other packets ignore this rule. The range of ether-type is 1501
to 65535.
This rule is only valid for the cos-specified message. Ignore this
rule for other messages. The range of cos is 0 to 7.
This rule is only valid for messages with the specified VLAN ID.
Ignore this rule for other messages. The rule of VLAN ID is 1
to 4094.
Optional VLAN mask. The default value is 0xfff.
4-257
Chapter 4 Service Configuration
ZTE Proprietary and Confidential

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents