beautypg.com

Wildcard masks, Class of service, Table 30 lists co – 3Com WX4400 3CRWX440095A User Manual

Page 382

background image

382

C

HAPTER

19: C

ONFIGURING

AND

M

ANAGING

S

ECURITY

ACL

S

Wildcard Masks

When you specify source and destination IP addresses in an ACE, you
must also include a mask for each in the form source-ip-addr mask and
destination-ip-addr mask.

The mask is a wildcard mask. The security ACL checks the bits in IP
addresses that correspond to any 0s (zeros) in the mask, but does not
check the bits that correspond to 1s (ones) in the mask. Specify the IP
address and wildcard mask in dotted decimal notation. For example, the
IP address and wildcard mask 10.0.0.0 and 0.255.255.255 match all IP
addresses that begin with 10 in the first octet.

Class of Service

Class-of-service (CoS) assignment determines the priority treatment of
packets transmitted by a WX switch, corresponding to a forwarding
queue on the MAP. Table 31 shows the results of CoS priorities you
assign in security ACLs.

Table 30 Common IP Protocol Numbers

Number Protocol

1

Internet Message Control Protocol (ICMP)

2

Internet Group Management Protocol (IGMP)

6

Transmission Control Protocol (TCP)

9

Any private interior gateway (used by Cisco for Internet Gateway Routing
Protocol)

17

User Datagram Protocol (UDP)

46

Resource Reservation Protocol (RSVP)

47

Generic Routing Encapsulation (GRE) protocol

50

Encapsulation Security Payload for IPSec (IPSec-ESP)

51

Authentication Header for IPSec (IPSec-AH)

55

IP Mobility (Mobile IP)

88

Enhanced Interior Gateway Routing Protocol (EIGRP)

89

Open Shortest Path First (OSPF) protocol

103

Protocol Independent Multicast (PIM) protocol

112

Virtual Router Redundancy Protocol (VRRP)

115

Layer Two Tunneling Protocol (L2TP)