Security
46
System Management Guide
3HE 11018 AAAC TQZZA Edition: 01
Use the following CLI commands to configure an IPv4 management access filter.
CLI Syntax: config>system
security
management-access-filter
ip-filter
default-action {permit | deny |
deny-host-unreachable}
entry entry-id
action {permit | deny |
deny-host-unreachable}
description description-string
dst-port port [mask]
log
protocol protocol-id
router router-instance
src-ip {ip-prefix/mask | ip-
prefix netmask}
src-port {port-id | cpm}
renum old-entry-number new-entry-
number
no shutdown
Use the following CLI commands to configure an IPv6 management access filter.
CLI Syntax: config>system
security
management-access-filter
ipv6-filter
default-action {permit | deny |
deny-host-unreachable}
entry entry-id
action {permit | deny |
deny-host-unreachable}
description description-string
dst-port port [mask]
flow-label value
log
next-header next-header
router router-instance
src-ip ipv6-address/prefix-
length
src-port {port-id | cpm}
renum old-entry-number new-entry-
number
no shutdown