PLANET XGS3-24040 User Manual

Page 449

Advertising
background image

Chapter 46 ACL Configuration

46-11

[no]{deny|permit}{any-source-mac|{host-source-ma

c<host_smac>}|{<smac><smac-mask>}}

{any-destination-mac|{host-destination-mac

<host_dmac>}|{<dmac><dmac-mask>}}tcp

{{<source><source-wildcard>}|any-source|

{host-source<source-host-ip>}} [s-port { <port1> |

range <sPortMin> <sPortMax> }]

{{<destination><destination-wildcard>}|any-destinati

on| {host-destination <destination-host-ip>}} [d-port

{ <port3> | range <sPortMin> <sPortMax> }]

[ack+fin+psh+rst+urg+syn]

[precedence<precedence>][tos<tos>][time-range<ti

me-range-name>]

Creates an extended

name-based

MAC-TCP

access rule; the “no” form

command deletes this

name-based extended

MAC-TCP access rule.

[no]{deny|permit}{any-source-mac|{host-source-ma

c<host_smac>}|{<smac><smac-mask>}}

{any-destination-mac|{host-destination-mac

<host_dmac>}|{<dmac><dmac-mask>}}udp

{{<source><source-wildcard>}|any-source|

{host-source<source-host-ip>}} [s-port { <port1> |

range <sPortMin> <sPortMax> }]

{{<destination><destination-wildcard>}|any-destinati

on| {host-destination <destination-host-ip>}}

[d-port { <port3> | range <sPortMin> <sPortMax> }]

[precedence <precedence>] [tos

<tos>][time-range<time-range-name>]

Creates an extended

name-based

MAC-UDP

access rule; the “no” form

command deletes this

name-based extended

MAC-UDP access rule.

[no]{deny|permit}{any-source-mac|{host-source-ma

c<host_smac>}|{<smac><smac-mask>}}

{any-destination-mac|{host-destination-mac

<host_dmac>}|{<dmac><dmac-mask>}}

{eigrp|gre|igrp|ip|ipinip|ospf|{<protocol-num>}}

{{<source><source-wildcard>}|any-source|

{host-source<source-host-ip>}}

{{<destination><destination-wildcard>}|any-destinati

on| {host-destination<destination-host-ip>}}

[precedence<precedence>][tos<tos>][time-range<ti

me-range-name>]

Creates an extended

name-based access rule for

the other IP protocol; the “no

form command deletes this

name-based extended access

rule.

c. Exit MAC-IP Configuration Mode

Command

Explanation

Extended name-based MAC-IP access Mode

exit

Quit extended name-based

MAC-IP access mode.

Advertising