ADTRAN Stub Routing Spezifikationen Seite 173

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 568
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 172
Command Reference Guide Global Configuration Mode Command Set
61950860L1-35D © 2003 ADTRAN, Inc. 173
<icmp-code>
*Optional
ICMP packets that are filtered using the ICMP message type (using the
<icmp-type> keyword) may also be filtered using the ICMP message code (valid
range: 0 to 255).
An <icmp-type> must be specified when entering an <icmp-code>.
<icmp-message>
*Optional
Filter packets using ICMP descriptive message rather than the corresponding
type and code associations.
Default Values
By default, all ADTRAN OS security features are disabled and there are no configured access lists.
Command Modes
(config)# Global Configuration Mode
Command History
Release 2.1 Command was introduced
Functional Notes
Access control lists (ACLs) are used as packet selectors by other ADTRAN OS systems; by themselves they
do nothing. ACLs are composed of an ordered list of entries with an implicit
deny all
at the end of each list. An
ACL entry contains two parts: an action (permit or deny) and a packet pattern. A permit ACL is used to allow
packets (meeting the specified pattern) to enter the router system. A deny ACL is used to block entry to the
network for specified criteria. The ADTRAN OS provides two types of ACLs: standard and extended. Standard
ACLs allow source IP address packet patterns only. Extended ACLs may specify patterns using most fields in
the IP header and the TCP or UDP header.
ACLs are performed in order from the top of the list down. Generally, the most specific entries should be at the
top and the most general at the bottom.
The following commands are contained in the access-list extended command set:
remark
Use the remark command to associate a descriptive tag (up to 80 alphanumeric characters encased
in quotation marks) to the access-list. Enter a functional description for the list such as This list
blocks all outbound web traffic.
log
Using the log keyword logs a message (if debug access-list is enabled for this access list) when the
access list finds a packet match.
Syntax Description (Continued)
Seitenansicht 172
1 2 ... 168 169 170 171 172 173 174 175 176 177 178 ... 567 568

Kommentare zu diesen Handbüchern

Keine Kommentare