Zte ZXR10 2910E-PS Configuration Manual page 94

Zxr10 2900e series easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2910E-PS:
Table of Contents

Advertisement

ZXR10 2900E Series Configuration Guide
Command
zte(cfg)#config egress-acl hybrid number < 700-799>
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny}< ip-protocol>{<
source-ipaddr>< sip-mask>| any}{< destination-ipaddr>< dip-mask>| any}[
dsscp < 0-63>][ fragment][ coss < 0-7>][< vlan-id>[< vlan-mask>]][<
source-mac>< smac-mask>| any][< dest-mac>< dmac-mask>| any]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} ip {< source-ipaddr><
sip-mask>| any}{< destination-ipaddr>< dip-mask>| any}[ dsscp < 0-63>][
fragment][ coss < 0-7>][< vlan-id>[< vlan-mask>]][< source-mac><
smac-mask>| any][< dest-mac>< dmac-mask>| any]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} tcp {< source-ipaddr><
sip-mask>| any}[ ssourrce-porrtt < 0-65535>< sport-mask>]{<
destination-ipaddr>< dip-mask>| any}[ desstt-porrtt < 0-65535><
dport-mask>][ dsscp < 0-63>][ fragment][ coss < 0-7>][< vlan-id>[<
vlan-mask>]][< source-mac>< smac-mask>| any][< dest-mac>< dmac-mask>|
any]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} udp {< source-ipaddr><
sip-mask>| any}[ ssourrce-porrtt < 0-65535>< sport-mask>]{<
destination-ipaddr>< dip-mask>| any}[ desstt-porrtt < 0-65535><
dport-mask>][ dsscp < 0-63>][ fragment][ coss < 0-7>][< vlan-id>[<
vlan-mask>]][< source-mac>< smac-mask>| any][< dest-mac>< dmac-mask>|
any]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} arp {< sender-ipaddr><
sip-mask>| any}{< target-ipaddr>< tip-mask>| any}[ coss < 0-7>][< vlan-id>[<
vlan-mask>]][< source-mac>< smac-mask>| any][< dest-mac>< dmac-mask>|
any]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} any {[ ettherr-ttype
< 1501-65535>][ coss < 0-7>][< vlan-id>[< vlan-mask>]][< source-mac><
smac-mask>| any][< dest-mac>< dmac-mask>| any]}
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} iipv6 < ip-protocol>{<
source-ipv6addr>< sipv6-mask>| any}{< destination-ipv6addr>< dipv6-mask>|
any}[< vlan-id>]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} ipv6 tcp {<
source-ipv6addr>< sipv6-mask>| any}[ ssourrce-porrtt < 0-65535><
sport-mask>]{< destination-ipv6addr>< dipv6-mask>| any}[ desstt-porrtt <
0-65535>< dport-mask>][< vlan-id>]
zte(egress-hybrid-acl)#rule < 1-500>{ permit | deny} ipv6 udp {<
source-ipv6addr>< sipv6-mask>| any}[ ssourrce-porrtt < 0-65535><
sport-mask>]{< destination-ipv6addr>< dipv6-mask>| any}[ desstt-porrtt <
0-65535>< dport-mask>][< vlan-id>]
SJ-20120409144109-002|2012-07-02(R1.0)
Function
Creates a hybrid egress ACL instance
and configures it.
Sets a hybrid egress ACL which
matches the protocol field of IPv4.
Sets a hybrid egress ACL which
matches the IPv4 packet.
Sets a hybrid egress ACL which
matches the IPv4-TCP packet.
Sets a hybrid egress ACL which
matches the IPv4-UDP packet.
Sets a hybrid egress ACL which
matches the ARP packet.
Sets a hybrid egress ACL which
matches the non-IPv6 packet.
Sets a hybrid egress ACL which
matches the protocol field of IPv6.
Sets a hybrid egress ACL which
matches the IPv6-TCP packet.
Sets a hybrid egress ACL which
matches the IPv6-UDP packet.
4-48
ZTE Proprietary and Confidential

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents