EasyManua.ls Logo

ELTEX MES3108 - Page 203

ELTEX MES3108
243 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
MES3000 Ethernet switch series 203
console#
console# configure
console(config)# ipv6 access-list MESipv6
console(config-ipv6-al)#
Table 5.248 Main parameters of commands
Parameter
Value
Action
permit
Permit
Creates a permitting filtration rule in ACL.
deny
Deny
Creates a denying filtration rule in ACL.
protocol
Protocol
The field is used to specify a protocol (or all protocols)
filtration will be based on. The following protocol options are
available: icmp, tcp, udp or the protocol numbericmp (58),
tcp (6), udp (17). The ipv6 value is used for all protocols to
establish correspondence.
source_prefix/
length
Source address and its
length
Defines IPv6 address and prefix length (0128) (the number of
the most significant bits in the address) of the packet source.
destination_prefix/
length
Destination address and its
length
Defines IPv6 address and prefix length (0128) (the number of
the most significant bits in the address) of the packet
destination.
dscp
The DSCP field in L3 header
Defines the value of the diffserv DSCP field. Possible message
codes of the dscp field: (063).
precedence
IP priority
Defines the priority of IP traffic: (07).
time_name
Name of the time-range
configuration profile
Defines configuration of time periods.
icmp_type
ICMP message type
It is used for filtration of ICMP packets. Possible message
codes and values of the icmp_type field: destination-
unreachable (1), packet-too-big (2), time-exceeded (3),
parameter-problem (4), echo-request (128), echo-reply (129),
mld-query (130), mld-report (131), mldv2-report (143), mld-
done (132), router-solicitation (133), router-advertisement
(134), nd-ns (135), nd-na (136).
icmp_code
ICMP message code
It is used for filtration of ICMP packets. Possible field values:
0255.
destination_port
UDP/TCP destination port
Possible values of the TCP port field: bgp (179),
chargen (19), daytime (13), discard (9), domain (53), drip
(3949), echo (7), finger (79), ftp (21), ftp-data (20), gopher
(70), hostname (42), irc (194), klogin (543), kshell (544), lpd
(515), nntp (119), pop2 (109), pop3 (110), smtp (25), sunrpc
(1110, syslog (514), tacacs-ds (49), talk (517), telnet (23), time
(37), uucp (117), whois (43), www (80);
for UDP port biff (512), bootpc (68), bootps (67), discard (9),
dnsix (90), domain (53), echo (7 ), mobile-ip (434), nameserver
(42), netbios-dgm (138), netbios-ns (137), on500-isakmp
(4500), ntp (123), rip (520), snmp (161), snmptrap (162),
sunrpc (111), syslog (514), tacacs-ds (49), talk (517), tftp (69),
time (37), who (513), xdmcp (177).
Any number (065535).
source_port
UDP/TCP source port
list_of_flags
TCP flags
If a flag should be set for a filtration rule, "+" is specified
before the flag; otherwise "-" is specified. Possible flags: +urg,
+ack, +psh, +rst, +syn, +fin, -urg, -ack, -psh, -rst, -syn, and -fin.
disable-port
Disables a port
Disables the port which was used to send a packet fulfilling the
requirements of a deny command which describes the field.
log-input
Message log
Enables message log registration when a packet is received
which corresponds to the record.
offset_list_name
Name of the bit fields list
Specifies that the user templates list should be used for
packets recognition. Every ACL may have its own templates list
defined.
index
Rule index
The index indicates position of the rule in a table. The lower
the index, the higher is the priority (12,147,483,647).
In order to select the whole range of parameters except dscp and ip-precedence, the any
parameter is used.

Table of Contents

Related product manuals