Zte ZXR10 2910E-PS Configuration Manual page 91

Zxr10 2900e series easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2910E-PS:
Table of Contents

Advertisement

Command
zte(hybrid-acl-group)#rule <1-500>{permit | deny}<ip-protocol>{<source-ipa
ddr><sip-mask>| any}{<destination-ipaddr><dip-mask>| any}[dscp <0-63>][f
ragment][cos <0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} ip {<source-ipaddr><s
ip-mask>| any}{<destination-ipaddr><dip-mask>| any}[dscp <0-63>][fra
gment][cos <0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} tcp {<source-ipaddr><s
ip-mask>| any}[source-port <0-65535><sport-mask>]{<destination-ipaddr
><dip-mask>| any}[dest-port <0-65535><dport-mask>][dscp <0-63>][fra
gment][cos <0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} udp {<source-ipaddr
><sip-mask>| any}[source-port <0-65535><sport-mask>]{<destination-ipa
ddr><dip-mask>| any}[dest-port <0-65535><dport-mask>][dscp <0-63>][f
ragment][cos <0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} arp {<sende
r-ipaddr><sip-mask>| any}{<target-ipaddr><tip-mask>| any}[cos
<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} any {[ether-type <1501
-65535>][cos <0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|
any][<dest-mac><dmac-mask>| any]}
zte(hybrid-acl-group)#rule <1-500>{permit | deny} ipv6 <ip-protocol>{<s
ource-ipv6addr><sipv6-mask>| any}{<destination-ipv6addr><dipv6-mask>|
any}[<vlan-id>]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} ipv6 tcp
{<source-ipv6addr><sipv6-mask>| any}[source-port <0-65535><s
port-mask>]{<destination-ipv6addr><dipv6-mask>| any}[dest-port
<0-65535><dport-mask>][<vlan-id>]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} ipv6 udp
{<source-ipv6addr><sipv6-mask>| any}[source-port <0-65535><s
port-mask>]{<destination-ipv6addr><dipv6-mask>| any}[dest-port
<0-65535><dport-mask>][<vlan-id>]
zte(hybrid-acl-group)#rule <1-500>{permit | deny} ipv6 any
{<source-ipv6addr><sipv6-mask>| any}{<destination-ipv6addr><dipv6-mask>|
any}[<vlan-id>]
SJ-20120409144109-002|2012-07-02(R1.0)
Chapter 4 Service Configuration
Function
Sets the rule that a hybrid ingress ACL
matches IPv4–specified protocol field
packet.
Sets the rule that a hybrid ingress ACL
matches IPv4 packet.
Sets the rule that a hybrid ingress ACL
matches IPv4-TCP packet.
Sets the rule that a hybrid ingress ACL
matches IPv4-UDP packet.
Sets the rule that a hybrid ingress ACL
is used to match ARP packet.
Sets the rule that a hybrid ingress ACL
is used to match non-IPv6 packet.
Sets the rule that a hybrid ingress
ACL is used to match IPv6–specified
protocol field packet.
Sets the rule that a hybrid ingress ACL
is used to match IPv6-TCP packet.
Sets the rule that a hybrid ingress ACL
is used to match IPv6-UDP packet.
Sets the rule that a hybrid ingress ACL
is used to match IPv6 packet.
4-45
ZTE Proprietary and Confidential

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents