Dell Force10 MXL Blade Reference Manual page 108

Ftos command line reference guide for the mxl 10/40gbe switch io module
Hide thumbs Also See for Force10 MXL Blade:
Table of Contents

Advertisement

Defaults
Command Modes
Command
History
Usage
Information
108
|
Access Control Lists (ACL)
any
Enter the keyword
host ip-address
Enter the keyword
dscp
Enter this keyword to deny a packet based on DSCP value.
Range: 0-63
operator
(OPTIONAL) Enter one of the following logical operand:
port port
(OPTIONAL) Enter the application layer port number. Enter two port numbers if
using the
Range: 0 to 65535
destination
Enter the IP address of the network or host to which the packets are sent.
mask
Enter a network mask in /prefix format (/x) or A.B.C.D. The mask, when specified in
A.B.C.D format, may be either contiguous or non-contiguous.
count
(OPTIONAL) Enter the keyword
byte
(OPTIONAL) Enter the keyword
order
(OPTIONAL) Enter the keyword
entry.
Range:
Default:
fragments
Enter the keyword
Not configured
CONFIGURATION-IP ACCESS-LIST-EXTENDED
Version 8.3.16.1
Introduced on MXL 10/40GbE Switch IO Module
The order option is relevant in the context of the Policy QoS feature only. For more information, refer
to the
Quality of Service (QoS)
In the MXL Switch, you can configure either count (packets) or count (bytes). However, for an ACL
with multiple rules, you can configure some ACLs with count (packets) and others as count (bytes) at
any given time.
Most ACL rules require one entry in the CAM. However, rules with TCP and UDP port operators ( gt ,
lt , range ) may require more than one entry. The range of ports is configured in the CAM based on bit
mask boundaries; the space required depends on exactly what ports are included in the range.
any
to specify that all routes are subject to the filter.
host
followed by the IP address to specify a host IP address.
eq
= equal to
neq
= not equal to
gt
= greater than
lt
= less than
range
= inclusive range of ports
range
logical operand.
count
byte
order
0-254 (where 0 is the highest priority and 254 is the lowest; lower order
numbers have a higher priority)
If the order keyword is not used, the ACLs have the lowest order by
default (255).
fragments
to use ACLs to control packet fragments.
chapter of the FTOS Configuration Guide.
to count packets processed by the filter.
to count bytes processed by the filter.
to specify the QoS priority for the ACL

Advertisement

Table of Contents
loading

Table of Contents