D-Link 3312SR Reference Manual - Page 197

xf> <hex 0x0-0xf> <hex 0x0-0xf> | offset_16-31

Page 197 highlights

DGS-3312SR Layer 3 Gigabit Switch config access_profile | dst_port | flag_mask [all | {urg | ack | psh | rst | syn | fin}]} | udp {src_port | dst_port } | protocol_id {user_define }]} [permit {priority {replace_priority }} | deny ] | packet_content {offset_0-15 | offset_16-31 | offset_32-47 | offset_48-63 | offset_64-79 }] [permit {priority {replace_priority} | deny] | delete access_id ] Description The config access_profile command is used to configure an access profile on the switch and to enter specific values that will be combined, using a logical AND operation, with masks entered with the create access_profile command, above. Parameters profile_id − Enter an integer between 1 and 255 that is used to identify the access profile that will be deleted with this command. This value is assigned to the access profile when it is created with the create access_profile command. add access_id − Adds an additional rule to the above specified access profile. The value specifies the relative priority of the additional rule. The lower access ID, the higher the priority the rule will be given. ethernet − Specifies that the switch will look only into the layer 2 part of each packet. • vlan − Specifies that the access profile will apply to only to this VLAN. • source_mac − Specifies that the access profile will apply to only packets with this source MAC address. • destination_mac − Specifies that the access profile will apply to only packets with this destination MAC address. • 802.1p − Specifies that the access profile will apply only to packets with this 802.1p priority value. • ethernet_type − Specifies that the access profile will apply only to packets with this hexadecimal 802.1Q Ethernet type value in the packet header. ip − Specifies that the switch will look into the IP fields in each packet. • vlan − Specifies that the access profile will apply to only to this VLAN. • source_ip − Specifies that the access profile will apply to only packets with this source IP address. • destination_ip − Specifies that the access profile will apply to only packets with this destination IP address. 191

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305

DGS-3312SR Layer 3 Gigabit Switch
191
config access_profile
| dst_port <value 0-65535> | flag_mask [all | {urg | ack | psh | rst |
syn | fin}]} | udp {src_port <value 0-65535> | dst_port <value 0-
65535>} | protocol_id <value 0 - 255> {user_define <hex 0x0-
0xffffffff>}]} [permit {priority <value 0-7> {replace_priority }} |
deny ] | packet_content {offset_0-15 <hex 0x0-0xffffffff> <hex 0x0-
0xffffffff> <hex 0x0-0xffffffff> <hex 0x0-0xffffffff> | offset_16-31
<hex 0x0-0xffffffff> <hex 0x0-0xffffffff> <hex 0x0-0xffffffff> <hex
0x0-0xffffffff> | offset_32-47 <hex 0x0-0xffffffff> <hex 0x0-
0xffffffff> <hex 0x0-0xffffffff> <hex 0x0-0xffffffff> | offset_48-63
<hex 0x0-0xffffffff> <hex 0x0-0xffffffff> <hex 0x0-0xffffffff> <hex
0x0-0xffffffff> | offset_64-79 <hex 0x0-0xffffffff> <hex 0x0-
0xffffffff> <hex 0x0-0xffffffff> <hex 0x0-0xffffffff>}] [permit
{priority <value 0-7> {replace_priority} | deny] | delete access_id
<value 1-255>]
Description
The
config access_profile
command is used to configure an access
profile on the switch and to enter specific values that will be combined,
using a logical AND operation, with masks entered with the
create
access_profile
command, above.
Parameters
profile_id <value 1-255>
Enter an integer between 1 and 255 that is
used to identify the access profile that will be deleted with this
command. This value is assigned to the access profile when it is
created with the
create access_profile
command.
add access_id <value 1-255>
Adds an additional rule to the above
specified access profile. The value specifies the relative priority of the
additional rule. The lower access ID, the higher the priority the rule will
be given.
ethernet
Specifies that the switch will look only into the layer 2 part
of each packet.
vlan <vlan_name 32>
Specifies that the access profile will
apply to only to this VLAN.
source_mac <macaddr>
Specifies that the access profile will
apply to only packets with this source MAC address.
destination_mac <macaddr>
Specifies that the access profile
will apply to only packets with this destination MAC address.
802.1p <value 0-7>
Specifies that the access profile will apply
only to packets with this 802.1p priority value.
ethernet_type <hex 0x0-0xffff>
Specifies that the access
profile will apply only to packets with this hexadecimal 802.1Q
Ethernet type value in the packet header.
ip
Specifies that the switch will look into the IP fields in each packet.
vlan <vlan_name 32>
Specifies that the access profile will
apply to only to this VLAN.
source_ip <ipaddr>
Specifies that the access profile will apply
to only packets with this source IP address.
destination_ip <ipaddr>
Specifies that the access profile will
apply to only packets with this destination IP address.