Dell MX5108n OS10 Enterprise Edition User Guide for PowerEdge MX IO Modules Re - Page 547
seq deny tcp (IPv6
View all Dell MX5108n manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 547 highlights
- dscp value - (Optional) Deny a packet based on the DSCP values, from 0 to 63. - fragment - (Optional) Use ACLs to control packet fragments. - ack - (Optional) Set the bit as acknowledgement. - fin - (Optional) Set the bit as finish-no more data from sender. - psh - (Optional) Set the bit as push. - rst - (Optional) Set the bit as reset. - syn - (Optional) Set the bit as synchronize. - urg - (Optional) Set the bit set as urgent. • operator - (Optional) Enter a logical operator to match the packets on the specified port number. The following options are available: - eq - Equal to - gt - Greater than - lt - Lesser than - neq - Not equal to - range - Range of ports, including the specified port numbers. • host ip-address - (Optional) Enter the IP address to use a host address only. Default Command Mode Usage Information Example Not configured IPV4-ACL OS10 cannot count both packets and bytes; when you enter the count byte options, only bytes increment. The no version of this command removes the filter, or use the no seq sequence-number command if you know the filter's sequence number. OS10(config)# ip access-list egress OS10(conf-ipv4-acl)# seq 10 deny tcp any any capture session 1 Supported Releases 10.2.0E or later seq deny tcp (IPv6) Assigns a filter to deny TCP packets while creating the filter. Syntax Parameters seq sequence-number deny tcp [A::B | A::B/x | any | host ipv6-address [operator]] [A::B | A:B/x | any | host ipv6-address [operator]] [ack | fin | psh | rst | syn | urg] [capture | count [byte] | dscp value | fragment] • sequence-number - Enter the sequence number to identify the route-map for editing and sequencing number, from 1 to 16777214. • A::B - Enter the IPv6 address in hexadecimal format separated by colons. • A::B/x - Enter the number of bits that must match the IPv6 address. • any - (Optional) Set all routes which are subject to the filter: - capture - (Optional) Capture packets the filter processes. - count - (Optional) Count packets the filter processes. - byte - (Optional) Count bytes the filter processes. - dscp value - (Optional) Deny a packet based on the DSCP values, from 0 to 63. - fragment - (Optional) Use ACLs to control packet fragments. - ack - (Optional) Set the bit as acknowledgement. - fin - (Optional) Set the bit as finish-no more data from sender. Access Control Lists 547