Ip Protocol; Source And Destination Ip Address - Avaya G450 Manual

Administration
Hide thumbs Also See for G450:
Table of Contents

Advertisement

Layer 4 rules in an access control list with a Deny operation are not applied to non-initial
fragments, and the device continues checking the next IP rule. This is to prevent cases in
which fragments that belong to other L4 sessions may be blocked by the other L4 session
which is blocked.
Layer 3 rules apply to non-initial fragments
Layer 3 rules that include the fragment criteria do not apply to initial fragments or
non-fragment packets
Layer 3 rules that do not include the fragment criteria apply to initial fragments and
non-fragment packets
Layer 4 rules apply to initial fragments and non-fragment packets
Layer 3 and Layer 4 rules in QoS and policy-based routing lists apply to non-initial
fragments

IP protocol

To specify the IP protocol to which the rule applies, enter ip-protocol followed by the name
of an IP protocol. If you want the rule to apply to all protocols, use any with the command. If you
want the rule to apply to all protocols except for one, use the no form of the command, followed
by the name of the protocol to which you do not want the rule to apply.
For example, the following command specifies the UDP protocol for rule 1 in QoS list 401:
G450-001(QoS 401/rule 1)# ip-protocol udp
The following command specifies any IP protocol except IGMP for rule 3 in access control
list 302:
G450-001(ACL 302/ip rule 3)# no ip-protocol igmp

Source and destination IP address

To specify a range of source and destination IP addresses to which the rule applies, use the
commands source-ip and destination-ip, followed by the IP range criteria. The IP range
criteria can be one of the following:
A range. Type two IP addresses to set a range of IP addresses to which the rule applies
A single address. Type host, followed by an IP address, to set a single IP address to
which the rule applies
A wildcard. Type host, followed by an IP address using wildcards, to set a range of IP
addresses to which the rule applies
All addresses. Type any to apply the rule to all IP addresses
Use the no form of the appropriate command to specify that the rule does not apply to the IP
address or addresses defined by the command.
Defining rules
Issue 1 January 2008
601

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents