beautypg.com

Allied Telesis AT-DC2552XS User Manual

Page 454

background image

Chapter 20: ACL Commands

454

Section V: Security and Traffic Control

wildcard_mask

Specifies a wildcard mask for the MAC address. The wildcard
mask determines how much of a MAC address to apply to the
MAC address match. This is the hexadecimal format:

XX:XX:XX:XX:XX:XX

The “X” variable can be “0” or “F.” Use the wildcard mask value “0”
for parts of the MAC address that the switch uses to filter on. Use
the wildcard mask value “F” for parts of the MAC address that the
switch ignores. Specify a wildcard mask of 00:00:00:00:00:00
when you want the switch match the exact MAC address that you
specify.

any

Specifies that any MAC addresses or IP addresses are used for
filtering.

vid

Specifies the VLAN ID of a receiving packet that the switch filters
on. Enter a value between 1 and 4,094.

src_ip_address

Specifies a source IPv4 address that the switch filters packets on.

dst_ip_address

Specifies a destination IPv4 address that the switch filters packets
on.

mask

Specifies a mask that determines how many bits of an IP address
to apply to the IP address match.

host

Specifies the host keyword and an IPv4 address when you want
the switch match the exact IPv4 address that you specify. The host
keyword in combination with an IPv4 address is equivalent to an
IPv4 address with a mask of 32.

proto_no

Specifies the value of a protocol field in a packet that the switch
filters on.The range is 1 to 255.

icmp_type

Specifies an ICMP message type. When you do not specify an
ICMP message type, the switch does not filter packets based on
an ICMP message type. The options are:

0: Echo Reply

3: Destination Unreachable