Dell Force10 S25N-S50N FTOS Command Line Reference Guide FTOS 8.4.2.7 E-Series - Page 698
count byte, range, count, monitor
View all Dell Force10 S25N-S50N manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 698 highlights
www.dell.com | support.dell.com Parameters source address mask any host ipv6-address operator port port destination address count byte log monitor Enter the IPv6 address of the network or host from which the packets were sent in the x:x:x:x::x format followed by the prefix length in the /x format. Range: /0 to /128 The :: notation specifies successive hexadecimal fields of zero. Enter a network mask in /prefix format (/x). Enter the keyword any to specify that all routes are subject to the filter. Enter the keyword host followed by the IPv6 address of the host in the x:x:x:x::x format. The :: notation specifies successive hexadecimal fields of zero (OPTIONAL) Enter one of the following logical operand: • eq = equal to • neq = not equal to • gt = greater than • lt = less than • range = inclusive range of ports (you must specify two ports for the port parameter.) (OPTIONAL) Enter the application layer port number. Enter two port numbers if using the range logical operand. Range: 0 to 65535 Enter the IPv6 address of the network or host to which the packets are sent in the x:x:x:x::x format followed by the prefix length in the /x format. Range: /0 to /128 The :: notation specifies successive hexadecimal fields of zero. (OPTIONAL) Enter the keyword count to count packets processed by the filter. (OPTIONAL) Enter the keyword byte to count bytes processed by the filter. (OPTIONAL) Enter the keyword log to enter ACL matches in the log. (OPTIONAL) Enter the keyword monitor to monitor traffic on the monitoring interface specified in the flow-based monitoring session along with the filter operation. Defaults Not configured. Command Modes ACCESS-LIST Command History Version 8.4.2.1 Version 8.2.1.0 Version 7.8.1.0 Version 7.4.1.0 Introduced on the S-Series Introduced support on the E-Series ExaScale Introduced support on the C-Series Introduced support on the E-Series TeraScale Added monitor option Usage The C-Series cannot count both packets and bytes, so when you enter the count byte options, only Information bytes are incremented. Most ACL rules require one entry in the CAM. However, rules with TCP and UDP port operators (gt, lt, range) may require more than one entry. The range of ports is configured in the CAM based on bitmask boundaries; the space required depends on exactly what ports are included in the range. 698 | IPv6 Access Control Lists (IPv6 ACLs)