PLANET WGSW-52040 User Manual

Page 336

Advertising
background image

(11) Configuring a standard IPv6 access-list based on nomenclature

a) Create a standard IPv6 access-list based on nomenclature

b) Specify multiple permit or deny rule entries

c) Exit ACL Configuration Mode

2. Configuring the packet filtering function

(1) Enable global packet filtering function

(2) Configure default action

3. Configuring time range function

(1) Create the name of the time range

(2) Configure periodic time range

(3) Configure absolute time range

4. Bind access-list to an incoming direction of the specified port

5. Clear the filtering information of the specified port

1. Configuring access-list

(1) Configuring a numbered standard IP access-list

Command Explanation

Global Mode

access-list <num> {deny | permit} {{<sIpAddr>

<sMask>

} | any-source | {host-source <sIpAddr>}}

no access-list <num>

Creates a numbered standard IP

access-list, if the access-list

already exists, then a rule will

add to the current access-list;

the “no access-list

<num>

“ command deletes a

numbered standard IP

access-list.

(2) Configuring a numbered extensive IP access-list

Command Explanation

Global Mode

access-list <num> {deny | permit} icmp {{<sIpAddr>

<sMask>

} | any-source | {host-source <sIpAddr>}}

{{<dIpAddr> <dMask>} | any-destination |

{host-destination <dIpAddr>}} [<icmp-type>

[<icmp-code>]] [precedence <prec>] [tos

<tos>

][time-range<time-range-name>]

Creates a numbered ICMP

extended IP access rule; if the

numbered extended access-list

of specified number does not

exist, then an access-list will be

created using this number.

41-115

Advertising