Netgear GSM7312 FSM7326P User Manual - Page 217

config acl rule action, config acl rule match dstl4port keyword, indicate how this rule is

Page 217 highlights

Format User Manual for the NETGEAR 7300 Series Layer 3 Managed Switch Software config acl rule delete config acl rule action This command removes a rule from the ACL referenced by the parameter . The rule is identified by the parameter. The values of permit or deny indicate how this rule is evaluated. Format config acl rule action config acl rule match dstip This command specifies a destination IP Address and Mask match condition for an ACL rule referenced by the and . The and parameters are 4digit dotted-decimal numbers which represent the destination IP Address and IP Mask, respectively. Format config acl rule match dstip config acl rule match dstl4port keyword This command specifies a destination layer 4 port match condition for an ACL rule referenced by the and . The parameter uses a single keyword notation and currently has the values of domain, echo, ftp, ftpdata, http, smtp, snmp, telnet, tftp, and www. Each of these values translates into its equivalent port number, which is used as both the start and end of a port range. This command and the config acl match destl4port range command are two methods of specifying the destination layer 4 port range as a match condition. Either command can be used to configure or modify the destination layer 4 port range. Format config acl rule match dstl4port keyword ACL Commands 202-10009-01 10-3

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268

User Manual for the NETGEAR 7300 Series Layer 3 Managed Switch Software
ACL Commands
10-3
202-10009-01
Format
config acl rule delete <aclid> <rulenum>
config acl rule action
This command removes a rule from the ACL referenced by the parameter
<aclid>.
The rule is
identified by the
<rulenum>
parameter. The values of
permit
or
deny
indicate how this rule is
evaluated.
Format
config acl rule action <aclid> <rulenum> <permit/deny>
config acl rule match dstip
This command specifies a destination IP Address and Mask match condition for an ACL rule
referenced by the
<aclid>
and
<rulenum>.
The
<ipaddr>
and
<ipmask>
parameters are 4-
digit dotted-decimal numbers which represent the destination IP Address and IP Mask,
respectively.
Format
config acl rule match dstip <aclid> <rulenum> <ipaddr> <ipmask>
config acl rule match dstl4port keyword
This command specifies a destination layer 4 port match condition for an ACL rule referenced by
the
<aclid>
and
<rulenum>
. The
<portkey>
parameter uses a single keyword notation and
currently has the values of
domain, echo, ftp, ftpdata, http, smtp, snmp, telnet, tftp
,
and
www
. Each of these values translates into its equivalent port number, which is used as both the
start and end of a port range.
This command and the
config acl match destl4port range
command are two methods of
specifying the destination layer 4 port range as a match condition. Either command can be used to
configure or modify the destination layer 4 port range.
Format
config acl rule match dstl4port keyword <aclid> <rulenum> <portkey>