OnSite 2800 Series User Manual

7 • Access control list configuration

 

 

Adding an ICMP filter rule to the current access control list profile

The command permit or deny are used to define an ICMP filter rule. Each ICMP filter rule represents an ICMP access of control list entry.

This procedure describes how to create an ICMP access control list entry that permits access

Mode: Profile access control list

Step

Command

Purpose

 

 

 

1

node(pf-acl)[name]#permit icmp {src src-wildcard any

Creates an ICMP access of con-

 

host src} {dest dest-wildcard any host dest} [msg name

trol list entry that permits access

 

type type type type code code] [cos group]

defined according to the com-

 

 

mand options

 

 

 

This procedure describes how to create an ICMP access control list entry that denies access Mode: Profile access control list

Step

Command

Purpose

 

 

 

1

node(pf-acl)[name]#deny icmp {src src-wildcard

Creates an ICMP access of control list

 

any host src} {dest dest-wildcard any host dest}

entry that denies access defined accord-

 

[msg name type type type type code code] [cos

ing to the command options

 

group]

 

 

 

 

Access control list configuration task list

85

Page 85
Image 85
Patton electronic 2800 Nodepf-acl name#permit icmp src src-wildcard any, Type type type type code code cos group