Management Access Filter Commands
Page 142 7450 ESS System Mangement Guide
When the source interface is configured, only management traffic arriving on those ports satisfy the 
match criteria.
The no form of the command reverts to the default value.
Default any interface
Parameters port-id — The port ID in the following format: slot[/mda]/port.
For example: To configure port 3 on MDA 2 on card 1 would be specified as 1/2/3.
Values port-id slot/mda/port[.channel]
encap-val 0 for null
0 — 4094 for dot1q
ccag-idccag-id. path-id[cc-type]
ccag keyword
id  1 — 8
path-id  a, b
cc-type .sap-net, .net-sap
cc-id 0 — 4094
lag-id lag-id
lag keyword
id  1 — 800
cpm keyword
cpm — Configure the Ethernet port on the primary 
CPMCPMCFM to match the criteria.
src-ip
Syntax [no] src-ip {[ip-prefix/mask] | [ip-prefix] | ip-prefix-list prefix-list-name}
Context config>system>security>mgmt-access-filter>ip-filter>entry
Description This command configures a source IP address range prefix to be used as a management access filter 
match criterion.
The no form of the command removes the source IP address match criterion. 
Default No source IP match criterion is specified.
Parameters ip-prefix’mask —  The IP prefix for the IP match criterion in dotted decimal notation.
ip-prefix-list  — Creates a list of IPv4 prefixes for match criteria in IPv4 ACL and CPM filter 
policies.
ip-prefix-list-name — A string of up to 32 characters of printable ASCII characters. If special charac-
ters are used, the string must be enclosed within double quotes.
mask — Specifies the subnet mask length expressed as a decimal integer.
Values 1 — 32 (mask length), 0.0.0.0 — 255.255.255.255 (dotted decimal)