ADTRAN Stub Routing Dokumentacja Strona 170

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 568
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 169
Global Configuration Mode Command Set Command Reference Guide
170 © 2003 ADTRAN, Inc. 61950860L1-35D
ip access-list extended <listname>
Use the ip access-list extended command to create an empty access list and enter the extended access-list
command set. Use the no form of this command to delete an access list and all the entries contained in it.
The following lists the complete syntax for the ip access-list extended commands:
Syntax Description
<listname>
Alphanumeric descriptor for identifying the configured access list (all access list
descriptors are case-sensitive)
<protocol>
Specifies the data protocol such as ip, icmp, tcp, udp, or a specific protocol
(0-255)
<source ip>
Specifies the source IP address used for packet matching
IP addresses can be expressed in one of three ways:
1. Using the keyword
any
to match any IP address. For example, entering
deny
any
will effectively shut down the interface that uses the access list because all
traffic will match the
any
keyword.
2. Using the
host
<A.B.C.D> to specify a single host address. For example,
entering
permit 196.173.22.253
will allow all traffic from the host with an IP
address of 196.173.22.253.
3. Using the <A.B.C.D> <wildcard> format to match all IP addresses in a range.
Wildcard masks work in reverse logic from subnet mask. Specifying a one in the
wildcard mask equates to a dont care. For example, entering
deny 192.168.0.0
0.0.0.255
will deny all traffic from the 192.168.0.0/24 network.
<action> <protocol> <source IP> <source port> <destination ip> <destination port>
Example:
[ permit | deny ] [ ip | tcp | udp ] [ any | host <A.B.C.D> | <A.B.C.D> <W.W.W.W> ]
<source port>* [ any | host <A.B.C.D> | <A.B.C.D> <W.W.W.W> ] <destination port>*
Example:
[ permit | deny ] icmp [ any | host <A.B.C.D> | <A.B.C.D> <W.W.W.W> ]
[ any | host <A.B.C.D> | <A.B.C.D> <W.W.W.W> ] <icmp-type>* <icmp-code>* <icmp-message>*
* = optional
Source IP Address
Destination IP
Source IP Address
Destination IP
Przeglądanie stron 169
1 2 ... 165 166 167 168 169 170 171 172 173 174 175 ... 567 568

Komentarze do niniejszej Instrukcji

Brak uwag