Dell Force10 S55T FTOS Command Line Reference Guide for the S55 System FTOS 8. - Page 196
deny tcp
View all Dell Force10 S55T manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 196 highlights
www.dell.com | support.dell.com Table 7-2. ICMP Message Type Keywords Keyword net-unreachable network-unknown no-room-for-option option-missing packet-too-big parameter-problem port-unreachable precedence-unreachable protocol-unreachable reassembly-timeout redirect router-advertisement router-solicitation source-quench source-route-failed time-exceeded timestamp-reply timestamp-request traceroute ttl-exceeded unreachable ICMP Message Type Name Network unreachable Network unknown Parameter required but no room Parameter required but not present Fragmentation needed and DF set All parameter problems Port unreachable Precedence cutoff Protocol unreachable Reassembly timeout All redirects Router discovery advertisements Router discovery solicitations Source quenches Source route failed All time exceeded Timestamp replies Timestamp requests Traceroute TTL exceeded All unreachables deny tcp c e s Configure a filter that drops TCP packets meeting the filter criteria. Syntax deny tcp {source mask | any | host ip-address} [bit] [operator port [port]] {destination mask | any | host ip-address} [dscp] [bit] [operator port [port]] [count [byte] | log] [order] [monitor] [fragments] To remove this filter, you have two choices: • Use the no seq sequence-number command syntax if you know the filter's sequence number or • Use the no deny tcp {source mask | any | host ip-address} {destination mask | any | host ip-address} command. Parameters source mask any host ip-address Enter the IP address of the network or host from which the packets were sent. Enter a network mask in /prefix format (/x) or A.B.C.D. The mask, when specified in A.B.C.D format, may be either contiguous or non-contiguous. Enter the keyword any to specify that all routes are subject to the filter. Enter the keyword host followed by the IP address to specify a host IP address. 196 | Access Control Lists (ACL)