Cisco 300 Series Cli Manual page 124

Stackable managed switches
Hide thumbs Also See for 300 Series:
Table of Contents

Advertisement

ACL Commands
OL-32830-01 Command Line Interface Reference Guide
icmp {any | {source-prefix/length}{any | destination- prefix/length}
no deny
{any| i cmp-type} {any| i cmp-code} [dscp number | precedence number] [
time-range-name] [disable-port | l og-input ]
tcp {any | {source-prefix/length} {any | source-port/port-range}}{any |
no deny
destination- prefix/length} {any| destination-port/port-range} [dscp number |
precedence number] [match-all list-of-flags] [
[disable-port | l og-input ]
udp {any | {source-prefix/length}} {any | source-port/port-range}}{any |
no deny
destination- prefix/length} {any| destination-port/port-range} [dscp number |
precedence number] [
Parameters
protocol
—The name or the number of an IP protocol. Available protocol
names are: icmp (58), tcp (6) and udp (17). To match any protocol, use the
ipv6 keyword. (Range: 0–255)
source-prefix/length
which to set permit conditions. This argument must be in the format
documented in RFC 3513 where the address is specified in hexadecimal
using 16-bit values between colons.
destination-prefix/length
networks about which to set permit conditions. This argument must be in
the format documented in RFC 3513 where the address is specified in
hexadecimal using 16-bit values between colons.
priority
- Specify the priority of the access control entry (ACE) in the access
control list (ACL). "1" value represents the highest priority and "2147483647"
number represents the lowest priority.(Range: 1-2147483647)
number
dscp
—Specifies the DSCP value. (Range: 0–63)
number
precedence
icmp-type
—Specifies an ICMP message type for filtering ICMP packets.
Enter a number or one of the following values: destination-unreachable (1),
packet-too-big (2), time-exceeded (3), parameter-problem (4), echo-request
(128), echo-reply (129), mld-query (130), mld-report (131), mldv2-report
(143), mld-done (132), router-solicitation (133), router-advertisement (134),
nd-ns (135), nd-na (136). (Range: 0–255)
icmp-code
—Specifies an ICMP message code for filtering ICMP packets.
(Range: 0–255)
time-range-name] [disable-port | l og-input ]
time-range
—The source IPv6 network or class of networks about
—The destination IPv6 network or class of
—Specifies the IP precedence value.
time-range-name]
time-range
4
time-range
124

Advertisement

Table of Contents
loading

Table of Contents