Deny Icmp - Siemens SCALANCE XM-400 Configuration Manual

Simatic net industrial ethernet switches command line interface
Hide thumbs Also See for SCALANCE XM-400:
Table of Contents

Advertisement

11.4.3.4

deny icmp

Description
With this command, you configure an IP access control list for ICMP messages.
You have the following options:
● All incoming and/or outgoing ICMP messages are not forwarded.
● Incoming and/or outgoing ICMP messages of a specific host are not forwarded.
● Incoming and/or outgoing ICMP messages of hosts of a specific subnet are not
Note
Processing order of the lists
The access control lists are processed on the interface in the order in which they were
created.
The index number of the access control list is not used for this.
Requirement
You are in the ACL standard configuration mode.
The command prompt is as follows:
cli(config-std-nacl)#
Syntax
Call up the command with the following parameters:
deny icmp {any | host <src-ip> | <network-src-ip> <mask>} [{any | host <dest-ip> |
<network-dest-ip> <mask>}] [<message-type type(0-255)>] [<message-code code(0-255)>]
The parameters have the following meaning:
Parameter
any
host
src-ip
network-src-ip
mask
any
host
dest-ip
network-dest-ip
SCALANCE XM-400/XR-500 Command Line Interface
Configuration Manual, 05/2014, C79000-G8976-C252-07
forwarded.
Description
Blocks all incoming frames
Keyword for a 32 bit long subnet mask.
Source IP address
Network source address
Corresponding subnet mask
Blocks all outgoing frames
Keyword for a 32 bit long subnet mask.
Destination IP address
Network destination address
Security and authentication
11.4 IP access control list
Values
-
-
enter a valid IP address.
enter a valid combination of
IP address and subnet mask.
-
-
enter a valid IP address.
enter a valid combination of
505

Advertisement

Table of Contents
loading

This manual is also suitable for:

Scalance xr-500

Table of Contents