EasyManua.ls Logo

Extreme Networks EAS 100-24t Switch CLI - Page 232

Extreme Networks EAS 100-24t Switch CLI
320 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Chapter 8: Access Control List (ACL)
Extreme Networks EAS 100-24t Switch CLI Manual
232
tcp - Specifies that the switch will examine the Transmission Control Protocol
(TCP) field within each packet.
src_port <value 0-65535> - Specifies that the access profile will apply only to
packets that have this TCP source port in their TCP header.
dst_port <value 0-65535> - Specifies that the access profile will apply only to
packets that have this TCP destination port in their TCP header.
flag – Enter the type of TCP flag to be matched.
all - Specifies that the TCP flag value will be set to 'all'.
urg - Specifies that the TCP flag value will be set to 'urg'.
ack - Specifies that the TCP flag value will be set to 'ack'.
psh - Specifies that the TCP flag value will be set to 'psh'.
rst - Specifies that the TCP flag value will be set to 'rst'.
syn - Specifies that the TCP flag value will be set to 'syn'.
fin - Specifies that the TCP flag value will be set to 'fin'.
udp - Specifies that the switch will examine the Universal Datagram Protocol
(UDP) field in each packet.
src_port <value 0-65535> - Specifies that the access profile will apply only to
packets that have this UDP source port in their header.
dst_port <value 0-65535> - Specifies that the access profile will apply only to
packets that have this UDP destination port in their header.
protocol_id <value 0-255> - Specifies that the switch will examine the protocol
field in each packet and if this field contains the value entered here, apply the
following rules.
ipv6 – Specifies IPv6 filtering mask.
class <value 0-255> - Specifies the IPv6 class.
flowlabel <hex 0x0-0xfffff> - Specifies the IPv6 flow label.
source_ipv6 <ipv6addr> - Specifies an IPv6 source address.
tcp - Specifies the TCP port submask.
src_port <value 0-65535> - Specifies an IPv6 L4 TCP source port submask.
dst_port <value 0-65535> - Specifies an IPv6 L4 TCP destination port
submask.
udp - Specifies the UDP port submask.
src_port <value 0-65535> - Specifies an IPv6 L4 UDP source port submask.
dst_port <value 0-65535> - Specifies an IPv6 L4 UDP destination port
submask.
packet_content – A maximum of 4 offsets can be specified. Each offset
defines four bytes of data, which is identified as a single UDF field. The offset
reference is also configurable.
offset1 – offset4 – Specifies the data to match for each match UDF field data
defined in the profile.
port <portlist> - Specifies the port number on the switch to permit, deny or
mirror access for the rule. The user can also configure “all” to specify all ports.
permit – Specifies that packets that match the access profile are permitted to
be forwarded by the switch.
create access_profile

Table of Contents

Related product manuals