Access Control List (Acl) Commands - D-Link DES-1228/ME Reference Manual

Layer 2 managed ethernet switch
Hide thumbs Also See for DES-1228/ME:
Table of Contents

Advertisement

The Switch implements Access Control Lists that enable the Switch to deny network access to specific devices or device groups
based on IP settings and MAC address.
The Access Control commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in the
following table.
Command
create access_profile
delete access_profile
config access_profile
show access_profile
enable
cpu_interface_filtering
disable
cpu_interface_filtering
create cpu
access_profile
profile_id
delete cpu
access_profile
config cpu
access_profile
profile_id
DES-1228/ME Metro Ethernet Managed Switch CLI Reference Guide
A
CCESS
Parameters
[ ethernet {vlan {<hex 0x0-0x0fff>} | source_mac <macmask> | destination_mac
<macmask> | 802.1p | ethernet_type} (1) | ip {vlan {<hex 0x0-0x0fff>} | source_ip_mask
<netmask> | destination_ip_mask <netmask> | dscp | [ icmp {type | code} | igmp {type} |
tcp {src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff> | flag_mask [ all | {urg
| ack | psh | rst | syn | fin} (1) ] } | udp {src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex
0x0-0xffff> } | protocol_id_mask<0x0-0xff> ] } (1) | ipv6 { class | flowlabel |
source_ipv6_mask< ipv6mask ::-::FFF:FFFF:FFFF> [ tcp { src_port_mask <hex 0x0-0xffff> |
dst_port_mask <hex 0x0-0xffff>} | udp { src_port_mask <hex 0x0-0xffff> | dst_port_mask
<hex 0x0-0xffff> } ] } ] profile_id <value 1-256>
[profile_id <value 1-256> | all]
[profile_id <value 1-256>] [add access_id [auto_assign | <value 1-65535>] [ethernet {[vlan
<vlan_name 32> | vlan_id <vid> ] {mask <hex 0x0-0x0fff>} | source_mac <macaddr> {mask
<macmask>} | destination_mac <macaddr> {mask <macmask>} | 802.1p <value 0-7> |
ethernet_type <hex 0x0-0xffff>} (1) | ip {[vlan <vlan_name 32> | vlan_id <vid>] {mask <hex
0x0-0x0fff>} | source_ip <ipaddr> {mask <netmask> } | destination_ip <ipaddr> {mask
<netmask>} | dscp <value 0-63> | [ icmp {type <value 0-255> code <value 0-255>} | igmp
{type <value 0-255>} | tcp {src_port <value 0-65535> {mask <hex 0x0-0xffff>} | dst_port
<value 0-65535> {mask <hex 0x0-0xffff>} | flag [all | { urg | ack | psh | rst | syn | fin } (1) ] } |
udp {src_port <value 0-65535> | dst_port <value 0-65535> } | protocol_id <value 0-255> }
(1) ] } | ipv6 {class <value 0-255> | flowlabel <hex 0x0-0xfffff> | source_ipv6 <ipv6addr>
{mask <ipv6mask>} | [ tcp {src_port < value 0-65535> {mask <hex 0x0-0xffff> } | dst_port <
value 0-65535>{ mask <hex 0x0-0xffff>}} udp {src_port <value 0-65535> {mask <hex 0x0-
0xffff>} | dst_port <value 0-65535> {mask <hex 0x0-0xffff>}} (1) ]}] [port [<portlist>|all]]
[permit {priority<value 0-7> {replace_priority} | replace_dscp_with <value0-63>| counter
[enable | disable] } | deny | mirror ] | delete access_id <value 1-65535>]
{profile_id <value 1-256>}
<value 1-3> [ethernet {vlan | source_mac <macmask> | destination_mac <macmask> |
802.1p | ethernet_type} (1) | ip { vlan | source_ip_mask <netmask> | destination_ip_mask
<netmask> | dscp | [ icmp {type | code } | igmp {type } | tcp {src_port_mask <hex 0x0-0xffff>
| dst_port_mask <hex 0x0-0xffff> | flag_mask [ all | {urg | ack | psh | rst | syn | fin} (1) ] } |
udp {src_port_mask <hex 0x0-0xffff> | dst_port_mask <hex 0x0-0xffff>} protocol_id_mask
<hex 0x0-0xff> {user_define_mask <hex 0x0-0xffffffff>} ]} (1) | ipv6 {[{ class | flowlabel |
source_ipv6_mask <ipv6mask> | destination_ipv6_mask <ipv6mask>]} (1) ]
profile_id <value 1-3>
profile_id <value 1-3> [add access_id <value 1-5>[ethernet {vlan <vlan_name 32> |
source_mac <macaddr> | destination_mac <macaddr > | 802.1p <value 0-7> |
ethernet_type <hex 0x0-0xffff>} (1) | ip{vlan <vlan_name 32> | source_ip <ipaddr> |
destination_ip <ipaddr> | dscp <value 0-63> | [icmp {type <value 0-255> | code <value 0-
255>} | igmp {type <value 0-255>} | tcp {src_port <value 0-65535> | dst_port <value 0-
65535> flag [all { urg | ack | psh | rst | syn | fin} (1) ]} | udp {src_port <value 0-65535> |
C
L
ONTROL
IST
213
22
(ACL) C
OMMANDS

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents