PLANET WGSW-52040 User Manual

Page 337

Advertising
background image

access-list <num> {deny | permit} igmp {{<sIpAddr>

<sMask>

} | any-source | {host-source <sIpAddr>}}

{{<dIpAddr> <dMask>} | any-destination |

{host-destination <dIpAddr>}} [<igmp-type>]

[precedence <prec>] [tos

<tos>

][time-range<time-range-name>]

Creates a numbered IGMP

extended IP access rule; if the

numbered extended access-list

of specified number does not

exist, then an access-list will be

created using this number.

access-list <num> {deny | permit} tcp {{<sIpAddr>

<sMask>

} | any-source | {host-source <sIpAddr>}}

[s-port {<sPort> | range <sPortMin> <sPortMax>}]

{{<dIpAddr> <dMask>} | any-destination |

{host-destination <dIpAddr>}} [d-port {<dPort> |

range <dPortMin> <dPortMax>}]

[ack+fin+psh+rst+urg+syn] [precedence <prec>] [tos

<tos>

][time-range<time-range-name>]

Creates a numbered TCP

extended IP access rule; if the

numbered extended access-list

of specified number does not

exist, then an access-list will be

created using this number.

access-list <num> {deny | permit} udp {{<sIpAddr>

<sMask>

} | any-source | {host-source <sIpAddr>}}

[s-port {<sPort> | range <sPortMin> <sPortMax>}]

{{<dIpAddr> <dMask>} | any-destination |

{host-destination <dIpAddr>}} [d-port {<dPort> |

range <dPortMin> <dPortMax>}] [precedence

<prec>

] [tos <tos>][time-range<time-range-name>]

Creates a numbered UDP

extended IP access rule; if the

numbered extended access-list

of specified number does not

exist, then an access-list will be

created using this number.

access-list <num> {deny | permit} {eigrp | gre | igrp |

ipinip | ip | ospf | <protocol-num>} {{<sIpAddr>

<sMask>

} | any-source | {host-source <sIpAddr>}}

{{<dIpAddr> <dMask>} | any-destination |

{host-destination <dIpAddr>}} [precedence <prec>]

[tos <tos>][time-range<time-range-name>]

Creates a numbered IP

extended IP access rule for

other specific IP protocol or all IP

protocols; if the numbered

extended access-list of specified

number does not exist, then an

access-list will be created using

this number.

no access-list <num>

Deletes a numbered extensive

IP access-list.

(3) Configuring a standard IP access-list basing on nomenclature

a. Create a name-based standard IP access-list

Command Explanation

Global Mode

41-116

Advertising