Motorola 2.1 Installationsanleitung Seite 645

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 952
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 644
ACCESS-LIST 12 - 13
Usage Guidelines
Use this command to permit traffic between networks/hosts based on the protocol type selected in the access list. The
following protocols are supported:
•ip
•icmp
•icp
udp
proto
The last ACE in the access list is an implicit deny statement.
Whenever the interface receives the packet, its content is checked against all the ACEs in the ACL. It is allowed based on
the ACL configuration.
Filtering on TCP/UDP allows the user to specify port numbers as filtering criteria
Select ICMP to allow/deny packets
permit proto
[<0-254>|WORD|eigrp|gre|
igmp|igp|ospf|vrrp]
[<source-IP/Mask>|any|host
<IP>][<dest-IP/Mask>|any|host
<IP>] {log} {rule-description
<WORD>|rule-precedence
<1-5000>}
Use with the permit command to allow any protocol other than TCP, UDP
or ICMP
0-254] – Displays protocol number
<WORD> – Refers to any protocol name
eigrp – EIGRP protocol 88
gre – GRE protocol 47
igmp – IGMP protocol 2
igp – IGP protocol 9
ospf – OSPF protocol 89
vrrp – VRRP protocol 112
<source-IP/Mask>|any|host <IP> – The source is the source IP
address of the network or host (in dotted decimal format). The source-
mask is the network mask. For example, 10.1.1.10/24 indicates the
first 24 bits of the source IP are used for matching
<source-IP/Mask>|any|host <IP> – The source is the source IP
address of the network or host (in dotted decimal format). The
source-mask is the network mask. For example, 10.1.1.10/24
indicates the first 24 bits of the source IP are used for matching.
any – any is an abbreviation for a source IP of 0.0.0.0, and the
source-mask bits are equal to 0
host – host is an abbreviation for exact source (A.B.C.D) and the
source-mask bits equal to 32
<dest-IP/mask>|any|host <IP> – Defines the destination host IP
address or destination network address
log – Generates log messages when the packet coming from the
interface matches the ACL entry. Log messages are generated only
for router ACLs
rule-precedence <1-5000> – Defines an integer value between
1-5000. This value sets the rule precedence in the ACL
rule-description <WORD> – Defines access-list entry name
Seitenansicht 644
1 2 ... 640 641 642 643 644 645 646 647 648 649 650 ... 951 952

Kommentare zu diesen Handbüchern

Keine Kommentare