(Access-List Hardware Ip Protocol Filter) - Allied Telesis AT-IX5-28GPX Manual

High availability, high power video surveillance poe switch
Hide thumbs Also See for AT-IX5-28GPX:
Table of Contents

Advertisement

IP
4 H
A
C
V
ARDWARE
CCESS
ONTROL
(
-
IP
ACCESS
LIST HARDWARE
PROTOCOL FILTER

(access-list hardware IP protocol filter)

Overview
Use this ACL filter to add an IP protocol type filter entry to the current hardware
access-list. The filter will match on any IP packet that has the specified source and
destination IP addresses and IP protocol type, or has the optionally specified
source and destination MAC addresses. The parameter any may be specified if an
address does not matter. If a sequence number is specified, the new filter is
inserted at the specified location. Otherwise, the new filter is added at the end of
the access-list.
The no variant of this command removes an IP protocol type filter entry from the
current hardware access-list. You can specify the IP protocol type filter entry for
removal by entering either its sequence number (e.g. no 10), or by entering its IP
protocol type filter profile without specifying its sequence number.
Note that the sequence number can be found by running the
Hardware ACLs)
Syntax
[<sequence-number>]
[any|ip|proto]
{deny|permit|send-to-cpu|copy-to-cpu|copy-to-mirror}
{any|ip|proto <ip-protocol>} {<source>|dhcpsnooping|any}
{<destination>|any} [mac {<mac-source-address>
<mac-source-mask>|any] {<mac-destination-address>
<mac-destination-mask>|any}
no {deny|permit|send-to-cpu|copy-to-cpu|copy-to-mirror}
{any|ip|proto <ip-protocol>} {<source>|dhcpsnooping}
{<destination>|any} [mac {<mac-source-address>
<mac-source-mask>|any] {<mac-destination-address>
<mac-destination-mask>|any}
no <sequence-number>
842
Command Reference for AT-IX5-28GPX High Availability, High Power Video Surveillance PoE Switch
L
(ACL) C
IST
OMMANDS
)
command.
Parameter
<sequence-number>
deny
permit
send to cpu
copy to cpu
copy to mirror
ip
any
proto <ip-protocol>
AlliedWare Plus™ Operating System - Version 5.4.5-0.x
Description
<1-65535>
The sequence number for the filter entry of the selected
access control list.
Access-list rejects packets of the type specified.
Access-list allows packets of the type specified
Specify packets to send to the CPU.
Specify packets to copy to the CPU.
Specify packets to copy to the mirror port.
IP packets.
Any packet.
The IP Protocol type specified by it protocol number
<1-255>.
show access-list (IPv4
C613-50057-01 REV A

Advertisement

Table of Contents
loading

Table of Contents