beautypg.com

Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual

Page 130

background image

112

Multi-Service IronWare Security Configuration Guide

53-1003035-02

Configuring numbered and named ACLs

3

Filtering traffic with ICMP packets
Use the following parameters if you want to filter traffic that contains ICMP packets. These
parameters apply only if you specified icmp as the ip-protocol value.

icmp-type

Enter one of the following values, depending on the software version the
Brocade device is running:

any-icmp-type

echo

echo-reply

information-request

mask-reply

mask-request

parameter-problem

redirect

NOTE: The redirect parameter is not supported on the Brocade NetIron CES or Brocade

NetIron CER devices.

source-quench

time-exceeded

NOTE: The time-exceeded parameter is not supported on Brocade NetIron CES or Brocade

NetIron CER devices.

timestamp-reply

timestamp-request

unreachable

num

NOTE

If the ACL is for the inbound traffic direction on a virtual routing interface,
you also can specify a subset of ports within the VLAN containing that
interface when assigning an ACL to the interface. Refer to

“Configuring

numbered and named ACLs”

.