Security
7705 SAR OS System Management Guide 85
For example, to select a range from 1024 up to 2047, specify 1024 0xFC00 for value and
mask.
Values 1 to 65535 (decimal)
Default 65535 (exact match)
flow-label
Syntax flow-label value
no flow-label
Context config>system>security>management-access-filter>ipv6-filter>entry
Description This command configures flow label match conditions for a management access filter match criterion.
Flow labeling enables the labeling of packets belonging to particular traffic flows for which the sender
requests special handling, such as non-default QoS or real-time service.
This command applies to IPv6 filters only.
Parameters value — the flow identifier in an IPv6 packet header that can be used to discriminate traffic flows
(see RFC 3595, Textual Conventions for IPv6 Flow Label)
Values 0 to 1048575
log
Syntax [no] log
Context config>system>security>management-access-filter>ip-filter>entry
config>system>security>management-access-filter>ipv6-filter>entry
Description This command enables match logging.
The no form of this command disables match logging.
Default no log
Table 4: 16-bit Mask Formats
Format Style Format Syntax Example
Decimal DDDDD 63488
Hexadecimal 0xHHHH 0xF800
Binary 0bBBBBBBBBBBBBBBBB 0b1111100000000000