Siemens SCALANCE XM-400 Configuration Manual page 513

Simatic net industrial ethernet switches command line interface
Hide thumbs Also See for SCALANCE XM-400:
Table of Contents

Advertisement

65535)> <port-number (1-65535)>}] [{any | host <dest-ip> | <network-dest-ip> <mask>}]
[{ gt <port-number(1-65535)> | lt <port-number(1-65535)> | eq <port-number(1-65535)>
| range <port-number (1-65535)> <port-number (1-65535)>}] [dscp<value(0-63)>]
The parameters have the following meaning:
Parameter
any
host
src-ip
network-src-ip
mask
port-number
gt
lt
eq
range
any
host
dest-ip
network-dest-ip
mask
dscp
value
Result
The IP access list for UDP datagrams has been configured.
Note
Subnet mask for individual hosts
If you create the rule for a single system (one IP address), you will need to specify a 32-Bit
long subnet mask. This is then "255.255.255.255". As an alternative, you can specify the
keyword "host" followed by the IP address.
Further notes
You delete the IP access control list with the
command.
You display the configuration of the access control list with the
SCALANCE XM-400/XR-500 Command Line Interface
Configuration Manual, 05/2014, C79000-G8976-C252-07
Description
Blocks all incoming TCP segments
Keyword for a 32 bit long subnet mask.
Source IP address
Network source address
Corresponding subnet mask
Port number
Keyword for port numbers higher than the
specified number (gt: greater than).
Keyword for port numbers lower than the
specified number (lt: less than).
Keyword for a specific port number (eq:equal).
Keyword for a range of port numbers.
Following this, the first and last port number of
the range is specified.
Blocks all outgoing TCP segments
Keyword for a 32 bit long subnet mask.
Destination IP address
Network destination address
Corresponding subnet mask
Keyword for the Differentiated Services
Codepoint
Value for the Differentiated Services Codepoint 0 ... 63
Security and authentication
Values
-
-
enter a valid IP address.
enter a valid combination of
IP address and subnet mask.
1 ... 65535
-
-
-
-
-
-
enter a valid IP address.
enter a valid combination of
IP address and subnet mask.
-
no ip access-list standard <acl-num>
show access-lists
11.4 IP access control list
command.
513

Advertisement

Table of Contents
loading

This manual is also suitable for:

Scalance xr-500

Table of Contents