Tp-Link T1700X-16TS V3 [368/468] Access list combined

40.5 access-list combined
Description
The access-list combined command is used to add Combined ACL rule. To
delete the corresponding rule, please use no access-list extended
command.
Syntax
access-list combined
acl-id-or-name
rule {auto |
rule-id
} {deny | permit}
logging {enable | disable} [smac
source-mac-address
smask
source-mac-mask
] [dmac
dest-mac-address
dmask
dest-mac-mask
] [vid
vlan-id
] [type
ether-type
] [pri
priority
] [sip
source-ip-address
sip-mask
source-ip-mask
]] [dip
destination-ip-address
dip-mask
destination-ip-mask
]
[dscp
dscp-value
] [tos
tos-value
] [pre
pre-value
] [protocol
protocol
[s-port
s-port-number
s-port-mask
s-port-mask
] [d-port
d-port-number
d-port-mask
d-port-mask
] [tcpflag
tcpflag
]] [tseg
time-range-name
]
no access-list combined
acl-id-or-name
rule
rule-id
Parameter
acl-id-or-name
—— Enter the ID or name of the ACL that you want to add a
rule for.
auto —— The rule ID will be assigned automatically and the interval between
rule IDs is 5.
rule-id
—— Assign an ID to the rule.
deny | permit —— Specify the action to be taken with the packets that match
the rule. By default, it is set to permit. The packets will be discarded if “deny”
is selected and forwarded if “permit” is selected.
logging {enable | disable} —— Enable or disable Logging function for the ACL
rule. If "enable " is selected, the times that the rule is matched will be logged
every 5 minutes. With ACL Counter trap enabled, a related trap will be
generated if the matching times changes.
source-mac-address
——
Enter the source MAC address.
source-mac-mask
——
Enter the source MAC address mask.
dest-mac-address
——
Enter the destination MAC address.
dest-mac-mask
——
Enter the destination MAC address mask. This is
required if a destination
MAC address is entered.
vlan-id:
The VLAN ID ranges from 1 to 4094.
ether-type
—— Specify the Ethernet-type with 4 hexadecimal numbers.
347

Содержание

Похожие устройства

Скачать