EasyManua.ls Logo

Extreme Networks Summit 200-24 - Page 108

Extreme Networks Summit 200-24
258 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
108 Summit 200 Series Switch Installation and User Guide
Access Policies
create access-mask <access-mask name>
{dest-mac}
{source-mac}
{vlan}
{ethertype}
{tos | code-point}
{ipprotocol}
{dest-ip /<mask length>} {dest-L4port}
{source-ip /<mask length>}
{source-L4port | {icmp-type} {icmp-code}}
{permit-established}
{egressport}
{ports}
{precedence <number>}
Creates an access mask. The mask specifies
which packet fields to examine. Options include:
<access-mask name>Specifies the
access mask name. The access mask name
can be between 1 and 31 characters.
dest-macSpecifies the destination MAC
address field.
source-macSpecifies the source MAC
address field.
vlanSpecifies the VLANid field.
ethertypeSpecifies the Ethertype field.
tosSpecifies the IP precedence field.
code-pointSpecifies the DiffServ code
point field.
ipprotocolSpecifies the IP protocol field.
dest-ipSpecifies the IP destination field
and subnet mask. You must supply the
subnet mask.
dest-L4portSpecifies the destination port
field.
source-ipSpecifies the IP source address
field and subnet mask. You must supply the
subnet mask.
source-L4portSpecifies the source port
field.
icmp-typeSpecify the ICMP type field.
icmp-codeSpecify the ICMP code field.
permit-establishedSpecifies the TCP
SYN/ACK bit fields.
egressportSpecify the egress port
portsSpecifies the ingress port(s) on
which this rule is applied.
precedenceSpecifies the access mask
precedence number. The range is 1 to
25,600.
Table 30: Access Control List Configuration Commands (continued)
Command Description

Table of Contents

Other manuals for Extreme Networks Summit 200-24

Related product manuals