Motorola WS5100 Series Cli Reference Manual page 313

Hide thumbs Also See for WS5100 Series:
Table of Contents

Advertisement

deny {tcp|udp} {source/source-mask | host source | any} [operator
source-port] {destination/destination-mask | host destination |
any} [operator destination-port] [log] [rule-precedence access-
list-entry precedence]
Parameters
deny {ip} {source/source-
mask | host source | any}
{destination/destination-
mask | host destination |
any} [log] [rule-
precedence access-list-
entry precedence]
deny
Use with a
command to reject IP packets
• deny – Sets the action type on an ACL
• {ip} – Specifies an IP (to match to a protocol)
• {source/source-mask | host source | any} – The
keyword source is the source IP address of the
network or host in dotted decimal format. The
source-mask is the network mask. For example,
10.1.1.10/24 indicates the first 24 bits of the source IP
is used for matching
• any is an abbreviation for a source IP of 0.0.0.0
and source-mask bits equal to 0
• host is an abbreviation for the exact source
(A.B.C.D) and source-mask bits equal to 32
• {destination/destination-mask | host destination |
any} – Defines the destination host IP address or
destination network address
• [log] – Generates log messages when the packet
coming from the interface matches an ACL entry. Log
messages are generated only for router ACLs
• [rule-precedence access-list-entry precedence] –
Defines an integer value between 1-5000. This value
sets the rule precedence in the ACL
Extended ACL Instance
14-3

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents