beautypg.com

19 permit | deny(ip standard), 20 permit | deny(ipv6 extended), Permit – PLANET XGS3-24042 User Manual

Page 954: Deny, Ip standard, Extended

background image

47-20

47.19 permit | deny(ip standard)

Command:

{deny | permit} {{ } | any-source | {host-source }}

no {deny | permit} {{ } | any-source | {host-source }}

Functions:

Create a name standard IP access rule, and “no {deny | permit} {{ } |

any-source | {host-source }}” action of this command deletes this name standard IP

access rule.

Parameters:

is the source IP address, the format is dotted decimal notation; <sMask > is the reverse

mask of source IP, the format is dotted decimal notation.

Command Mode:

Name standard IP access-list configuration mode

Default:

No access-list configured.

Example:

Permit packets with source address 10.1.1.0/24 to pass, and deny other packets with source

address 10.1.1.0/16.

Switch(config)# access-list ip standard ipFlow

Switch(Config-Std-Nacl-ipFlow)# permit 10.1.1.0 0.0.0.255

Switch(Config-Std-Nacl-ipFlow)# deny 10.1.1.0 0.0.255.255

47.20 permit | deny(ipv6 extended)

Command:

[no] {deny | permit} icmp {{<sIPv6Prefix/sPrefixlen>} | any-source | {host-source

>}} {> | any-destination | {host-destination >}}

[> [>]] [dscp >] [flow-label >][time-range ]

[no] {deny | permit} tcp { /sPrefixlen> | any-source | {host-source }}

[s-port { > | range <sPortMax> }] { > |

any-destination | {host-destination }} [d-port { <dPort> | range <dPortMin>

> }] [syn | ack | urg | rst | fin | psh] [dscp ] [flow-label ][time-range

]

This manual is related to the following products: