Dell MX5108n OS10 Enterprise Edition User Guide for PowerEdge MX IO Modules Re - Page 520
deny ipv6, deny tcp
View all Dell MX5108n manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 520 highlights
Usage Information Example OS10 cannot count both packets and bytes; when you use the count byte options, only bytes increment. The no version of this command removes the filter. OS10(config)# ip access-list testflow OS10(conf-ipv4-acl)# deny ip any any capture session 1 count Supported Releases 10.2.0E or later deny ipv6 Configures a filter to drop all or specific packets from an IPv6 address. Syntax deny ipv6 [A::B | A::B/x | any | host ipv6-address] [A::B | A:B/x | any | host ipv6-address] [capture | count [byte] | dscp | fragment] Parameters • A::B - (Optional) Enter the source IPv6 address from which the packet was sent and the destination address. • A::B/x - (Optional) Enter the source network mask in /prefix format (/x) and the destination mask. • any - (Optional) Set all routes which are subject to the filter: - capture - (Optional) Capture packets the filter processes. - count - (Optional) Count packets the filter processes. - byte - (Optional) Count bytes the filter processes. - dscp value - (Optional) Deny a packet based on the DSCP values, from 0 to 63. - fragment - (Optional) Use ACLs to control packet fragments. • host ipv6-address - (Optional) Enter the IPv6 address to use a host address only. Default Command Mode Usage Information Example Not configured IPV6-ACL OS10 cannot count both packets and bytes; when you use the count byte options, only bytes increment. The no version of this command removes the filter. OS10(config)# ipv6 access-list ipv6test OS10(conf-ipv6-acl)# deny ipv6 any any capture session 1 Supported Releases 10.2.0E or later deny tcp Configures a filter that drops transmission control protocol (TCP) packets meeting the filter criteria. Syntax Parameters deny tcp [A.B.C.D | A.B.C.D/x | any | host ip-address [operator]] [[A.B.C.D | A.B.C.D/x | any | host ip-address [operator]] [ack | fin | psh | rst | syn | urg] [capture |count [byte] | dscp value | fragment] • A.B.C.D - Enter the IP address in A.B.C.D format. • A.B.C.D/x - Enter the number of bits to match in A.B.C.D/x format. • any - (Optional) Enter to subject all routes to the filter: - capture - (Optional) Capture packets the filter processes. - count - (Optional) Count packets the filter processes. 520 Access Control Lists