Accton Technology ES4626 User Manual

Page 759

Advertising
background image

759

access-list<num>{deny|permit}{any-source-mac|

{host-source-mac<host_smac>}|{<smac><smac-mask>}}

{any-destination-mac|{host-destination-mac

<host_dmac>}|{<dmac><dmac-mask>}}igmp

{{<source><source-wildcard>}|any|{host<source-host-ip>}}

{{<destination><destination-wildcard>}|any-destination|

{host-destination<destination-host-ip>}} [<igmp-type>] [precedence <precedence>]

[tos <tos>][time-range<time-range-name>]

access-list<num>{deny|permit}{any-source-mac|

{host-source-mac<host_smac>}|{<smac><smac-mask>}}{any-destination-mac|

{host-destination-mac<host_dmac>}|{<dmac><dmac-mask>}}tcp

{{<source><source-wildcard>}|any| {host<source-host-ip>}}[s-port<port1>]

{{<destination><destination-wildcard>}|any-destination|{host-destination

<destination-host-ip>}} [d-port<port3>] [ack+fin+psh+rst+urg+syn] [precedence

<precedence>] [tos<tos>][time-range<time-range-name>]

access-list<num>{deny|permit}{any-source-mac|

{host-source-mac<host_smac>}|{<smac><smac-mask>}}{any-destination-mac|

{host-destination-mac<host_dmac>}|{<dmac><dmac-mask>}}udp

{{<source><source-wildcard>}|any{host<source-host-ip>}}[s-port<port1>]

{{<destination><destination-wildcard>}|any-destination|

{host-destination<destination-host-ip>}}[d-port<port3>]

[precedence <precedence>] [tos <tos>][time-range<time-range-name>]

access-list<num>{deny|permit}{any-source-mac|

{host-source-mac<host_smac>}|{<smac><smac-mask>}}

{any-destination-mac|{host-destination-mac <host_dmac>}|{<dmac><dmac-mask>}}

{eigrp|gre|igrp|ip|ipinip|ospf|{<protocol-num>}} {{<source><source-wildcard>}|any

|{host<source-host-ip>}} {{<destination><destination-wildcard>}|any-destination|

{host-destination<destination-host-ip>}} [precedence <precedence>] [tos

<tos>][time-range<time-range-name>]

Functions:

Define a expansion numeric MAC-IP ACL rule, ‘No’ command deletes a

expansion numeric MAC-IP ACL access-list rule.

Parameters:

num access-list serial No. this is a decimal’s No. from 3100-3199.; deny if

rules are matching, deny to access; permit if rules are matching, permit to access;

any-source-mac: any source MAC address; any-destination-mac: any destination MAC

address; host_smac , smac: source MAC address; smac-mask: mask (reverse mask) of

source MAC address ; host_dmac , dmas destination MAC address; dmac-mask mask

(reverse mask) of destination MAC address; protocol No. of name or IP protocol. It can

be a key word: eigrp, gre, icmp, igmp, igrp, ip, ipinip, ospf, tcp, or udp, or an integer from

Advertising
This manual is related to the following products: