Nortel Networks 2300 Series manual Any

Models: 2300 Series

1 622
Download 622 pages 48.74 Kb
Page 466
Image 466

466Security ACL Commands

protocol

IP protocol by which to filter packets:

 

ip

 

tcp

 

udp

 

icmp

 

• A protocol number between 0 and 255.

 

(For a complete list of IP protocol names and numbers, see

 

www.iana.org/assignments/protocol-numbers.)

source-ip-addr mask

IP address and wildcard mask of the network or host from which the

any

packet is being sent. Specify both address and mask in dotted

 

decimal notation. For more information, see “Wildcard Masks” on

 

page 12.

 

To match on any address, specify any or 0.0.0.0 255.255.255.255.

operator port [port2]

Operand and port number(s) for matching TCP or UDP packets to

 

the number of the source or destination port on source-ip-addror

 

destination-ip-addr. Specify one of the following operands and the

 

associated port:

 

eq—Packets are filtered for only port number.

 

gt—Packets are filtered for all ports that are greater

 

 

than port number.

 

lt—Packets are filtered for all ports that are less

 

 

than port number.

 

neq—Packets are filtered for all ports except port

 

 

number.

 

range—Packets are filtered for ports in the range

 

 

between port and port2. To specify a port range,

 

 

enter two port numbers. Enter the lower port

 

 

number first, followed by the higher port number.

 

(For a complete list of TCP and UDP port numbers, see

 

www.iana.org/assignments/port-numbers.)

destination-ip-addr mask

IP address and wildcard mask of the network or host to which the

any

packet is being sent. Specify both address and mask in dotted

 

decimal notation. For more information, see “Wildcard Masks” on

 

page 12.

 

To match on any address, specify any or 0.0.0.0 255.255.255.255.

type icmp-type

Filters ICMP messages by type. Specify a value from 0 through

 

255. (For a list of ICMP message type and code numbers, see

 

www.iana.org/assignments/icmp-parameters.)

code icmp-code

For ICMP messages filtered by type, additionally filters ICMP

 

messages by code. Specify a value from 0 through 255. (For a list of

 

ICMP message type and code numbers, see www.iana.org/

 

assignments/icmp-parameters.)

NN47250-100 (Version 02.51)

Page 466
Image 466
Nortel Networks 2300 Series manual Any