ACL Commands

permit (ip)

The permit IP-Access List Configuration mode command permits traffic if the conditions defined in the permit statement match.

Syntax

permit {any protocol} {any destination-wildcard}} [dscp

{source source-wildcard}} {any {destination dscp number ip-precedenceip-precedence]

permit-icmp{any {source source-wildcard}} {any {destination destination- wildcard}} {any icmp-type} {any icmp-code} [dscp number ip-precedencenumber]

permit-igmp{any {source source-wildcard}} {any {destination destination- wildcard}} {any igmp-type} [dscp number ip-precedencenumber]

permit-tcp{any {source source-wildcard}} {any source-port} {any {destination destination-wildcard}} {any destination-port} [dscp number ip-precedencenumber] [flags list-of-flags]

permit-udp{any {source source-wildcard}} {any source-port} {any {destination destination-wildcard}} {any destination-port} [dscp number ip-precedencenumber]

Parameters

source — Specifies the source IP address of the packet. Specify any to indicate IP address 0.0.0.0 and mask 255.255.255.255.

source-wildcard— Specifies wildcard to be applied to the source IP address. Use 1s in bit positions to be ignored. Specify any to indicate IP address 0.0.0.0 and mask 255.255.255.255.

destination — Specifies the destination IP address of the packet. Specify any to indicate IP address 0.0.0.0 and mask 255.255.255.255.

destination-wildcard— Specifies wildcard to be applied to the destination IP address. Use 1s in bit positions to be ignored. Specify any to indicate IP address 0.0.0.0 and mask 255.255.255.255.

protocol — Specifies the abbreviated name or number of an IP protocol. (Range: 0- 255)

The following table lists the protocols that can be specified:

IP Protocol

Abbreviated Name

Protocol Number

 

 

 

Internet Control Message Protocol

icmp

1

 

 

 

Internet Group Management Protocol

igmp

2

 

 

 

IP in IP (encapsulation) Protocol

ipinip

4

 

 

 

Transmission Control Protocol

tcp

6

 

 

 

Exterior Gateway Protocol

egp

8

 

 

 

42

Intel® Blade Server Ethernet Switch Modules SBCEGBESW1 and SBCEGBESW10 CLI Guide

Page 58
Image 58
Intel SBCEGBESW10 CLI manual Permit ip, IP Protocol Abbreviated Name Protocol Number