Dell S4148U-ON OS10 Enterprise Edition User Guide Release 10.4.0E R2 - Page 491
deny icmp
View all Dell S4148U-ON manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 491 highlights
• any - (Optional) Set routes which are subject to the filter. • protocol-number - (Optional) MAC protocol number identified in the header, from 600 to ffff. • capture - (Optional) Capture packets the filter processes. • cos - (Optional) CoS value, from 0 to 7. • count - (Optional) Count packets the filter processes. • vlan - (Optional) VLAN number, from 1 to 4094. Default Command Mode Usage Information Example Disabled MAC-ACL OS10 cannot count both packets and bytes; when you use the count byte options, only bytes increment. The no version of this command removes the filter. OS10(config)# mac access-list macacl OS10(conf-mac-acl)# deny any any cos 7 OS10(conf-mac-acl)# deny any any vlan 2 Supported Releases 10.2.0E or later deny icmp Configures a filter to drop all or specific internet control message protocol (ICMP) messages. Syntax deny icmp [A.B.C.D | A.B.C.D/x | any | host ip-address] [[A.B.C.D | A.B.C.D/x | any | host ip-address] [capture | count [byte] | dscp value | fragment] Parameters • A.B.C.D - Enter the IP address in hexadecimal format separated by colons. • A.B.C.D/x - Enter the number of bits to match to the IP address. • any - (Optional) Set all routes subject to the filter. • capture - (Optional) Capture packets the filter processes. • count - (Optional) Count packets the filter processes. • byte - (Optional) Count bytes the filter processes. • dscp value - (Optional) Deny a packet based on the DSCP values, from 0 to 63. • fragment - (Optional) Use ACLs to control packet fragments. • host ip-address - (Optional) Enter the IP address to use a host address only. Default Command Mode Usage Information Example Not configured IPV4-ACL OS10 cannot count both packets and bytes; when you use the count byte options, only bytes increment. The no version of this command removes the filter. OS10(config)# ip access-list egress OS10(conf-ipv4-acl)# deny icmp any any capture session 1 count Supported Releases 10.2.0E or later Access Control Lists 491