EasyManua.ls Logo

Orion A10E - Page 169

Orion A10E
376 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Orion Networks
A10E/A28E/A28F Configuration Guide
6 Security
Orion Networks
149
Step
Configuration
Description
13
Alpha-A28E(config-
aclmap)#match ip dscp {
dscp-
value
| af11 | af12 | af13 |
af21 | af22 | af23 | af31 |
af32 | af33 | af41| af42 |af43
| cs1 | cs2 | cs3 | cs4 | cs5
| cs6 | cs7| default | ef }
(Optional) define match rule for DSCP
value of IP packet.
14
Alpha-A28E(config-
aclmap)#match ip protocol
protocol-id
(Optional) define match rule for
protocol value of IP packet.
15
Alpha-A28E(config-
aclmap)#match ip tcp
{ destination-port | source-
port } {
port-id
| bgp |
domain | echo | exec | finger
| ftp | ftp-data | gopher |
hostname | ident | irc |
klogin | kshell | login | lpd
| nntp | pim-auto-rp | pop2 |
pop3 | smtp | sunrpc | syslog
| tacacs | talk | telnet |
time | uucp | whois | www }
(Optional) define match rule for port ID
of TCP packet.
16
Alpha-A28E(config-
aclmap)#match ip tcp { ack |
fin | psh | rst | syn | urg }
(Optional) define match rule for TCP
protocol tag.
17
Alpha-A28E(config-
aclmap)#match ip udp
{ destination-port | source-
port } {
port-id
| biff |
bootpc | bootps | domain |
echo | mobile-ip | netbios-dgm
| netbios-ns | netbios-ss |
ntp | pim-auto-rp | rip | snmp
| snmptrap | sunrpc | syslog |
tacacs | talk | tftp | time |
who }
(Optional) Define match rule for port ID
of UDP packet.
18
Alpha-A28E(config-
aclmap)#match ip icmp
icmp-
type-id
[
icmp-code
]
(Optional) define match rule for
message type of ICMP packet.
19
Alpha-A28E(config-
aclmap)#match ip no-fragments
(Optional) define match rules for
message type of non-fragment packets.
20
Alpha-A28E(config-
aclmap)#match ip igmp {
igmp-
type-id
| dvmrp | leave-v2|
pim-v1 | query | report-v1 |
report-v2 |report-v3 }
(Optional) define match rule for
message type of IGMP packets.

Table of Contents