Planet XGS3-42000R User Manual page 449

4-slot layer 3 ipv6/ ipv4 routing chassis switch
Table of Contents

Advertisement

ip access-list extended <name>
no ip access-list extended <name>
b. Specify multiple "permit" or "deny" rules
Extended IP ACL Mode
[no] {deny | permit} icmp {{<sIpAddr> < sMask>} |
any-source | {host-source < sIpAddr>}} {{<dIpAddr>
<dMask>} | any-de stination | {host-de stination
<dIpAddr>}} [<icmp-type> [<icmp-code> ]]
[precedence <prec>] [tos
<tos>][time-range<time-range-name>]
[no] {deny | permit} igmp {{<sIpAddr> < sMask>} |
any-source | {host-source < sIpAddr>}} {{<dIpAddr>
<dMask>} | any-de stination | {host-de stination
<dIpAddr>}} [<igmp-type>] [precedence <prec>] [tos
<tos>][time-range<time-range-name>]
[no] {deny | permit} tcp {{< sIpAddr> < sMask>} |
any-source | {host-source < sIpAddr>}} [s-port
{ <sPort> | range <sPortMin> <sPortMax> }]
{{<dIpAddr> <dMask>} | any-de stination |
{host-de stination <dIpAddr>}} [d-port { <dPort> |
range <dPortMin> <dPortMax> }]
[ack+fin+psh+rst+urg+ syn] [precedence <prec>] [to s
<tos>][time-range<time-range-name>]
[no] {deny | permit} udp {{< sIpAddr> <sMask>} |
any-source | {host-source < sIpAddr>}} [s-port
{ <sPort> | range <sPortMin> <sPortMax> }]
{{<dIpAddr> <dMask>} | any-de stination |
{host-de stination <dIpAddr>}} [d-port { <dPort> |
range <dPortMin> <dPortMax> }] [precedence
<prec>] [tos <tos>][time-range<time-range-name>]
[no] {deny | permit} {eigrp | gre | igrp | ipinip | ip |
ospf | <protocol -num>} {{< sIpAddr> < sMask>} |
any-source | {host-source < sIpAddr>}} {{<dIpAddr>
<dMask>} | any-de stination | {host-de stination
<dIpAddr>}} [precedence <prec>] [tos
<tos>][time-range<time-range-name>]
Command
46-5
Creates
an
extended
access-list
basing
nomenclature;
the
access-li st
extended
<name> " command deletes
the name-based extended IP
access-list.
Explanation
Creates
an
extended
name-based ICMP IP access
rule; the "no" form command
deletes
this
name-based
extended IP access rule.
Creates
an
extended
name-based IGMP IP access
rule; the "no" form command
deletes
this
name-based
extended IP access rule.
Creates
an
extended
name-based TCP IP access
rule; the "no" form command
deletes
this
name-based
extended IP access rule.
Creates
an
extended
name-based UDP IP access
rule; the "no" form command
deletes
this
name-based
extended IP access rule.
Creates
an
extended
name-based IP access rule
for other IP protoc ols; the "no"
form command deletes this
name-based
extended
access rule.
IP
on
"no
ip
IP

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents