IP Access Control Lists
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m .
Table 29-1
Protocol
TCP
1. If the TCP connection is already established, use the established option to find matches. A match occurs if the TCP datagram
ICMP Information
IP packets can be filtered based on the following optional ICMP conditions:
•
•
Table 29-2
Table 29-2
ICMP Type
echo
echo-reply
destination unreachable
traceroute
time exceeded
1. ICMP redirect packets are always rejected.
TOS Information
IP packets can be filtered based on the following optional TOS conditions:
•
•
Cisco MDS 9000 Family Configuration Guide
29-4
TCP and UDP Port Numbers (continued)
1
has the ACK, FIN, PSH, RST, or URG control bit set.
The icmp-type: ICMP message type. The type is a number from 0 to 255.
The icmp-code: ICMP message code. The code is a number from 0 to 255.
displays the value for each ICMP type.
ICMP Type Value
1
The TOS level, as specified by a number from 0 to 15
The TOS name: max-reliability, max-throughput, min-delay, min-monetary-cost, and normal
Chapter 29
Configuring IP Access Control Lists
Port
ftp
ftp-data
ssh
telnet
smtp
tasacs-ds
www
sftp
http
wbem-http
wbem-https
Code
8
0
3
30
11
OL-6973-03, Cisco MDS SAN-OS Release 2.x
Number
20
21
22
23
25
65
80
115
143
5988
5989
Need help?
Do you have a question about the DS-X9530-SF1-K9 - Supervisor-1 Module - Control Processor and is the answer not in the manual?
Questions and answers