Permit | Deny (Ip Access-List) - D-Link DGS-6600-48T Cli Reference Manual

Modular layer 3 chassis ethernet managed switch
Hide thumbs Also See for DGS-6600-48T:
Table of Contents

Advertisement

DGS-6604
m

permit | deny (ip access-list)

{ permit | deny } tcp { any | host SRC-IP-ADDR | SRC-IP-ADDR MASK } [ OPERATOR PORT ] {
any | host DST-IP-ADDR | DST-IP-ADDR MASK } [ OPERATOR PORT ] [ precedence
PRECEDENCE | tos TOS |dscp DSCP ] [time-range PROFILE-NAME ] [ priority PRIORITY ]
{ permit | deny } udp { any | host SRC-IP-ADDR | SRC-IP-ADDR MASK } [ OPERATOR PORT ] {
any | host DST-IP-ADDR | DST-IP-ADDR MASK } [ OPERATOR PORT ] [ precedence
PRECEDENCE | tos TOS |dscp DSCP ] [ time-range PROFILE-NAME ] [ priority PRIORITY ]
{ permit | deny } [ gre | esp | eigrp | icmp | igmp | ospf | pim | vrrp | protocol-id PROTOCOL-ID
] { any | host SRC-IP-ADDR | SRC-IP-ADDR MASK } { any | host DST-IP-ADDR | DST-IP-ADDR
MASK } [ precedence PRECEDENCE | tos TOS | dscp DSCP] [ time-range PROFILE-NAME ] [
priority PRIORITY ]
no { permit | deny } tcp { any | host SRC-IP-ADDR | SRC-IP-ADDR MASK} [OPERATOR PORT
] { any | host DST-IP-ADDR | DST-IP-ADDR MASK} [ OPERATOR PORT ] [ precedence
PRECEDENCE | tos TOS | dscp DSCP ] [ time-range ]
no { permit | deny} udp { any | host SRC-IP-ADDR | SRC-IP-ADDR MASK } [ OPERATOR PORT
] { any | host DST-IP-ADDR | DST-IP-ADDR MASK } [ OPERATOR PORT ] [ precedence
PRECEDENCE | tos TOS | dscp DSCP ] [ time-range ]
no { permit | deny } [ gre | esp | eigrp | icmp | igmp | ospf | pim | vrrp | protocol-id
PROTOCOL-ID ] {any | host SRC-IP-ADDR | SRC-IP-ADDR MASK } { any | host DST-IP-ADDR |
DST-IP-ADDR MASK } [ precedence PRECEDENCE | tos TOS | dscp DSCP ] [ time-range ]
Syntax Description
any
host SRC-IP-ADDR
SRC-IP-ADDR MASK
host DST-IP-ADDR
DST-IP-ADDR MASK
precedence
PRECEDENCE
dscp DSCP
tos TOS
CLI Reference Guide
Use the permit command to define the rule for packets to be access based on
their IP header information. Use the no permit command to remove a permit
entry. Use the deny command to add a deny entry. Use the no deny command
to remove a deny entry.
Means any source IP address or any destination IP address.
Specifies a specific source IP address.
Specifies a group of source IP addresses by using mask.
Specifies a specific destination IP address.
Specifies a group of destination IP addresses by using mask.
(Optional) Packets can be filtered by precedence level, as specified by a
number from 0 to 7.
(Optional) Specifies the Differentiated Services Control pointer (DSCP)
value, as specified by a number from 0 to 63.
(Optional) Packets can be filtered by the type of service level, as specified
by a number from 0 to 255.
permit | deny (ip access-list)
458

Advertisement

Table of Contents
loading

This manual is also suitable for:

Dgs-6604Dgs-6600 series

Table of Contents