Brocade Mobility RFS Controller CLI Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 1346

Advertising
background image

1338

Brocade Mobility RFS Controller CLI Reference Guide

53-1003098-01

29

Drop/Deny Packets

CCB:0:Matched ACL:ftpuser:ip Rule:0 Disposition:Drop Packet Src MAC:<00-11-25-14-D9-E2> Dst
MAC:<00-15-70-81-91-6A> Ethertype:0x0800 Src IP:192.168.2.102 Dst IP:192.168.2.1 Proto:17
Src Port:137 Dst Port:137

Feb 07 20:41:28 2013: %DATAPLANE-5-LOGRULEHIT: Matched ACL:ftpuser:ip Rule:0
Disposition:Drop Packet Src MAC:<00-11-25-14-D9-E2> Dst MAC:<00-15-70-81-91-6A>
Ethertype:0x0800 Src IP:192.168.2.102 Dst IP:192.168.2.1 Proto:17 Src Port:137 Dst

To generate an allow/deny protocol log, an ACL rule has to be applied and logging has to be
enabled.

For example, the following commands have to be executed:

rfs7000-37FABE(config-ip-acl-test)#permit ip any any log rule-precedence 20

rfs7000-37FABE(config-ip-acl-test)#

rfs7000-37FABE(config-ip-acl-test)#deny ip any any log rule-precedence 20

rfs7000-37FABE(config-ip-acl-test)#

Advertising