Planet SGS-6341 Series Command Manual page 952

Gigabit ethernet l3 stackable managed switch with 10gbe uplink
Table of Contents

Advertisement

{{<dIpAddr> <dMask>} | any-destination | {host-destination <dIpAddr>}} [<igmp-type>]
[precedence <prec>] [tos <tos>][time-range<time-range-name>]
[no] {deny | permit} tcp {{ <sIpAddr> <sMask> } | any-source | {host-source <sIpAddr> }}
[s-port { <sPort> | range <sPortMin> <sPortMax> }] {{ <dIpAddr> <dMask> } | any-destination
| {host-destination <dIpAddr> }} [d-port { <dPort> | range <dPortMin> <dPortMax> }]
[ack+fin+psh+rst+urg+syn] [precedence <prec> ] [tos <tos> ][time-range
<time-range-name> ]
[no] {deny | permit} udp {{ <sIpAddr> <sMask> } | any-source | {host-source <sIpAddr> }}
[s-port { <sPort> | range <sPortMin> <sPortMax> }] {{ <dIpAddr> <dMask> } | any-destination
| {host-destination <dIpAddr> }} [d-port { <dPort> | range <dPortMin> <dPortMax> }]
[precedence <prec> ] [tos <tos> ][time-range<time-range-name> ]
[no] {deny | permit} {eigrp | gre | igrp | ipinip | ip | ospf | <protocol-num>} {{<sIpAddr>
<sMask>} | any-source | {host-source <sIpAddr>}} {{<dIpAddr> <dMask>} | any-destination |
{host-destination <dIpAddr>}} [precedence <prec>] [tos
<tos>][time-range<time-range-name>]
Functions:
Create a name extended IP access rule to match specific IP protocol or all IP protocol.
Parameters:
<sIpAddr> is the source IP address, the format is dotted decimal notation; <sMask > is the reverse
mask of source IP, the format is dotted decimal notation; <dIpAddr> is the destination IP address,
the format is dotted decimal notation; <dMask> is the reverse mask of destination IP, the format is
dotted decimal notation, attentive position o, ignored position 1; <igmp-type>, the type of igmp,
0-15; <icmp-type>, the type of icmp, 0-255 ; <icmp-code>, protocol No. of icmp, 0-255; <prec>, IP
priority, 0-7; <tos>, to value, 0-15; <sPort>, source port No., 0-65535; <sPortMin>, the down
boundary of source port; <sPortMax>, the up boundary of source port; <dPort>, destination port
No. 0-65535; <dPortMin>, the down boundary of destination port; <dPortMax>, the up boundary of
destination port; <time-range-name>, time range name.
Command Mode:
Name extended IP access-list configuration mode
Default:
No access-list configured.
Examples:
Create the extended access-list, deny icmp packet to pass, and permit udp packet with destination
address 192. 168. 0. 1 and destination port 32 to pass.
Switch(config)# access-list ip extended udpFlow
Switch(Config-IP-Ext-Nacl-udpFlow)#deny igmp any any-destination
Switch(Config-IP-Ext-Nacl-udpFlow)#permit udp any host-destination 192.168.0.1 d-port 32
47-19

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sgs-6341-24t4x

Table of Contents