EasyManuals Logo

ELTEX MES1000 User Manual

ELTEX MES1000
231 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #199 background imageLoading...
Page #199 background image
MES1000, MES2000 Ethernet Switches 199
destination_port
UDP/TCP destination port
Possible values of the TCP port field: bgp (179),
chargen (19), daytime (13), discard (9), domain (53), drip
(3949), echo (7), finger (79), ftp (21), ftp-data (20), gopher
(70), hostname (42), irc (194), klogin (543), kshell (544), lpd
(515), nntp (119), pop2 (109), pop3 (110), smtp (25), sunrpc
(1110, syslog (514), tacacs-ds (49), talk (517), telnet (23), time
(37), uucp (117), whois (43), www (80);
for UDP port biff (512), bootpc (68), bootps (67), discard (9),
dnsix (90), domain (53), echo (7 ), mobile-ip (434), nameserver
(42), netbios-dgm (138), netbios-ns (137), on500-isakmp
(4500), ntp (123), rip (520), snmp (161), snmptrap (162),
sunrpc (111), syslog (514), tacacs-ds (49), talk (517), tftp (69),
time (37), who (513), xdmcp (177).
Any number (065535).
source_port
UDP/TCP source port
list_of_flags
TCP flags
If a flag should be set for a filtration rule, "+" is specified
before the flag; otherwise "-" is specified. Possible flags: +urg,
+ack, +psh, +rst, +syn, +fin, -urg, -ack, -psh, -rst, -syn, and -fin.
If several flags are used for the same filtration rule, they are
written in one line without spaces. For example: +fin-ack.
disable-port
Disables a port
Disables the port which was used to send a packet fulfilling the
requirements of a deny command, which describes the field.
log-input
Message log
Enables message log registration when a packet is received
which corresponds to the record.
offset_list_name
Name of user templates list
Specifies that the user templates list should be used for
packets recognition. Every ACL may have its own templates list
defined.
index
Rule index
The index indicates position of the rule in a list and its priority.
The lower the index, the higher the priority. The possible
values are 12,147,483,647.
In order to select the whole range of parameters except dscp and ip-precedence, the any
parameter is used.
As soon as at least one record has been added to ACL, the last record is set by default to
deny any any any that means that all packets, which do not fulfil ACL requirements, will be
ignored.
Table 5.243Configuration commands for IP-based ACLs
Command
Action
permit protocol
{any|source_ip source_ip_wildcard}
{any|destination_ip destination_ip_wildcard}
[dscp dscp | precedence precedence]
[time-range range_name] [index index]
[offset-list offset_list_name]
Adds a permit filtration record for a protocol. Packets which fulfil the
record's requirements will be processed by the switch.
permit ip
{any|source_mac source-mac-wildcard}
{any|destination_mac
destination_mac_wildcard}
{any|source_ip source_ip_wildcard}
{any|destination_ip destination_ip_wildcard}
[dscp dscp | precedence precedence]
[time-range range_name] [index index]
[offset-list offset_list_name]
Adds a permit filtration record for the IP protocol. Packets which fulfil the
record's requirements will be processed by the switch.
permit icmp
{any|source_ip source_ip -wildcard}
{any|destination_ip destination_ip_wildcard}
{any|icmp_type}
{any|icmp_code}
[dscp dscp | ip-precedence precedence]
[time-range range_name] [index index]
[offset-list offset_list_name]
Adds a permit filtration record for the ICMP protocol. Packets which fulfil
the record's requirements will be processed by the switch.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the ELTEX MES1000 and is the answer not in the manual?

ELTEX MES1000 Specifications

General IconGeneral
BrandELTEX
ModelMES1000
CategorySwitch
LanguageEnglish

Related product manuals