ZXR10CommandManual(SecurityVolume)
Syntax
Description
<rule-no>
RulenumberofthehybridACL
permit|denyPermits/deniesthepacketmatchingthisrule
<ip-number>Protocoltypenumber
ipIPprotocol
<source><source-wil
dcard>
IPaddressandwildcardmaskofthesource
tobematched
<dest><dest-wildca
rd>
IPaddressandwildcardmaskofthe
destinationtobematched
any
Anysource(destination)IPaddress
tcp
TCP
ruleOperatortocomparethesourceordestination
port
<port>
Sourceordestinationportnumber
tcpporttype
TCPsourceordestinationporttype
tcp-control<0-63>
CombinationofTCPheader
URGACKPSHRSTSYNFIN,availablefor
high-endswitchT160series
udp
UDP
udpporttypeUDPsourceordestinationporttype
precedence
<pre-value>
Priority,range:0~7
tos<tos-value>
Servicetype,range:0~15
dscp<dscp-value>DSCPvalue,range:0~63
<ether-protocol>
Ethernettypesegment,IP ,ARPoraspecic
number(0~65535)
cos<cos-vlaue>
802.1ppriority,range:0~7,outer
incos<cos-vlaue>802.1ppriority,range:0~7,inside
dinvlan<vlan-id>
InsideVLANidentier
doutervlan
<vlan-id>
OutsideVLANidentier
<source-mac><sourc
e-mac-wildcard>
SourceMACaddressandwildcardmask
<dest-mac><dest-ma
c-wildcard>
DestinationMACaddressandwildcardmask
any
Allsourceordestinationaddresses
ingressSourceMACaddresskeyword
30CondentialandProprietaryInformationofZTECORPORATION