beautypg.com

Amer Networks SS2R48G4i V2 User Manual

Page 141

background image

SS2R24G4i/SS2R48G4i

130

(1) Create the name of the time range

(2) Configure periodic time range

(3) Configure absolute time range

4. Bind access-list to a specific direction of the specified port.


1.Configuring access-list

(1)

Configuring a numbered standard IP access-list

Command Explanation
Global Mode

access-list {deny | permit}

{{ } | any-source

| {host-source }}

no access-list

Creates a numbered standard IP access-list,
if the access-list already exists, then a rule
will add to the current access-list; the “no
access-list “ command deletes a
numbered standard IP access-list.

(2)

Configuring a numbered extensive IP access-list

Command Explanation
Global Mode

access-list {deny | permit} icmp

{{

} | any-source |

{host-source }} {{ }

| any-destination | {host-destination }}

[ []] [precedence ]

[tos ][time-range]

Creates a numbered ICMP
extended IP access rule; if the
numbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.

access-list {deny | permit} igmp

{{

} | any-source |

{host-source }} {{ }

| any-destination | {host-destination }}

[<igmp-type>] [precedence ] [tos

][time-range]

Creates a numbered IGMP
extended IP access rule; if the
numbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.

access-list

{deny | permit} tcp

{{

} | any-source |

{host-source

}} [s-port ]

{{ } | any-destination |

{host-destination }} [d-port ]

[ack+fin+psh+rst+urg+syn] [precedence ]

[tos ][time-range]

Creates a numbered TCP
extended IP access rule; if the
numbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.

access-list {deny | permit} udp

{{

} | any-source |

{host-source

}} [s-port ]

{{ } | any-destination |

{host-destination }} [d-port ]

[precedence

] [tos

][time-range]

Creates a numbered UDP
extended IP access rule; if the
numbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.