Patton electronics IPLink 3210 Series Getting Started Manual page 66

G.shdsl vpn router
Table of Contents

Advertisement

IPLink 3210 Series Getting Started Guide
Where the syntax is:
Keyword
The source address to be included in the rule. An IP address in dotted-decimal-format,
src
e.g. 64.231.1.10.
A wildcard for the source address. Expressed in dotted-decimal format this value specifies
src-wildcard
which bits are significant for matching. One-bits in the wildcard indicate that the corre-
sponding bits are ignored. An example for a valid wildcard is 0.0.0.255, which speci-
fies a class C network.
Indicates that IP traffic to or from all IP addresses is to be included in the rule.
any
The address of a single source host.
host src
Optional. Indicates that a packets port must be equal to the specified port in order to
eq port
match the rule.
Optional. Indicates that a packets port must be less than the specified port in order to
lt port
match the rule.
Optional. Indicates that a packets port must be greater than the specified port in order to
gt port
match the rule
range from to Optional. Indicates that a packets port must be equal or greater than the specified from
port and less than the specified to port to match the rule.
The destination address to be included in the rule. An IP address in dotted-decimal-for-
dest
mat, e.g. 64.231.1.10.
dest-wildcard A wildcard for the destination address. See src-wildcard .
The address of a single destination host.
host dest
Optional. Specifies that packets matched by this rule belong to a certain Class of Service
cos
(CoS). For detailed description of CoS configuration refer to chapter 7,
configuration"
Optional. Specifies that the rule is intended to filter RTP/RTCP packets. In this mode you
cos-rtp
can specify different CoS groups for data packets (even port numbers) and control pack-
ets (odd port numbers). Note: this option is only valid when protocol UDP is selected.
CoS group name.
group
CoS group name for RTP data packets. Only valid when the rtp option has been specified
group-data
CoS group name for RTCP control packets. Only valid when the rtp option has been spec-
group-ctrl
ified.
Example: Create TCP or UDP access control list entries
Select the access-list profile named WanRx and create the rules for:
Permitting any TCP traffic to host 193.14.2.10 via port 80, and permitting UDP traffic from host 62.1.2.3 to
host 193.14.2.11 via any port in the range from 1024 to 2048.
3210(cfg)#profile acl WanRx
3210(pf-acl)[WanRx]#permit tcp any host 193.14.2.10 eq 80
3210(pf-acl)[WanRx]#permit udp host 62.1.2.3 host 193.14.2.11 range 1024 2048
3210(pf-acl)[WanRx]#exit
3210(cfg)#
Access control list configuration task list
on page 71.
6 • Access control list configuration
Meaning
"Link scheduler
66

Advertisement

Table of Contents
loading

Table of Contents