QTECH QSW-2800 Инструкция по настройке User Manual
Page 284

+7(495) 797-3311 www.qtech.ru
Москва, Новозаводская ул., 18, стр. 1
270
destination| {host-destination <destination-host-ip>}}
[d-port {<port3> | range <dPortMin> <dPortMax>}]
[ack+fin+psh+rst+urg+syn] [precedence
<precedence>] [tos <tos>][time-range<time-range-
name>]
access-list<num>{deny|permit}{any-source-mac|
{host-source-mac<host_smac>}|{<smac><smac-
mask>}}{any-destination-mac|{host-destination-mac
<host_dmac>}|{<dmac><dmac-mask>}}udp
{{<source><source-wildcard>}|any-source| {host-
source<source-host-ip>}} [s-port {<port1> | range
<sPortMin> <sPortMax>}]
{{<destination><destination-wildcard>}|any-
destination| {host-destination<destination-host-ip>}}
[d-port {<port3> | range <dPortMin> <dPortMax>}]
[precedence <precedence>] [tos <tos>][time-
range<time-range-name>]
Creates a numbered mac-udp
extended mac-ip access rule; if the
numbered extended access-list of
specified number does not exist,
then an access-list will be created
using this number.
access-list<num>{deny|permit}{any-source-mac|
{host-source-mac<host_smac>}|{<smac><smac-
mask>}} {any-destination-mac|{host-destination-mac
<host_dmac>}|{<dmac><dmac-mask>}}
{eigrp|gre|igrp|ip|ipinip|ospf|{<protocol-num>}}
{{<source><source-wildcard>}|any-source| {host-
source<source-host-ip>}}
{{<destination><destination-wildcard>}|any-
destination| {host-destination<destination-host-ip>}}
[precedence <precedence>] [tos <tos>][time-
range<time-range-name>]
Creates a numbered extended
mac-ip access rule for other
specific mac-ip protocol or all mac-
ip protocols; if the numbered
extended access-list of specified
number does not exist, then an
access-list will be created using
this number.
no access-list <num>
Deletes this numbered extended
MAC-IP access rule.
(9) Configuring a extended MAC-IP access-list based on nomenclature
a. Create an extensive MAC-IP access-list based on nomenclature
Command
Explanation
Global Mode
mac-ip-access-list extended <name>
no mac-ip-access-list extended <name>
Creates an extended name-based
MAC-IP access rule; the no form
command deletes this name-
based extended MAC-IP access