Qtech QSW-2870 [169/230] Attached list

Qtech QSW-2870 [169/230] Attached list
Chapter7 Security Configuration
7-15
Objective
Procedure
3. or use command of filter-list acl-number to enter Layer3 ACL6
Configuration View and then Use command of filter-list { in | out } acl-
number to apply ACL6 to physical interface, trunk interface and VLAN
interface;
4. End.
Attached List:
Parameter
Description
Value
acl-number
Access Control List
to be from 1 to 4000
<1-1000>: layer2 ACL
<1001-2000>: IPv4ACL
<2001-3000>: Mixed ACL
<3001-4000>: IPv6ACL
rule-number
Rule number of ACL
to be from 1 to 16384
src-ip6-address/M | any
Source IP address of ACL
rule
src-ip6-address is dotted hex,
form as X:X::X:X, M to be from 1 to
128
any means any source IP
address
dst-ip6-address/M | any
Destination IP address of
ACL rule
dst-ip6-address is dotted hex,
form as X:X::X:X, M to be from 1 to
128
any means any destination IP
address
next-header value
next message head value
to be from 1 to 255
hop-limit value
hop limitation value
to be from 1 to 255
icmp type
ICMP range of ACL rule
to be from 1 to 255
Icmp code
ICMP code range of ACL
rule
to be from 1 to 255
(<0-65535>|<0-65535>/<
0-65535>|any)
destination port/port range
-
field
Segment range, including
syn, synack, ack, fin, finack,
psh, rst and urg segment
to be from 0 to 63
fragment
Whether the rule is
effective for non first
fragment message
-
(request|response|any)
ARP request
message/response message
-

Содержание

Скачать
Случайные обсуждения