Brocade Communications Systems ServerIron ADX 12.4.00 Service Manual Page 83

  • Download
  • Add to my manuals
  • Print
  • Page
    / 149
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 82
ServerIron ADX NAT64 Configuration Guide 71
53-1002444-02
Configuring rule-based ACLs
5
DRAFT: BROCADE CONFIDENTIAL
The <tcp/udp-port> parameter specifies the TCP or UDP port number or well-known name. You can
specify a well-known name for any application port whose number is less than 1024. For other
application ports, you must enter the number. Enter “?” instead of a port to list the well-known
names recognized by the CLI.
The in | out parameter specifies whether the ACL applies to incoming traffic or outgoing traffic on
the interface to which you apply the ACL. You can apply the ACL to an Ethernet port.
NOTE
The out option is not supported in the rule-based ACL mode.
The precedence <name> | <num> parameter of the ip access-list command specifies the IP
precedence. The precedence option for of an IP packet is set in a three-bit field following the
four-bit header-length field of the packet’s header. You can specify one of the following:
critical or 5: The ACL matches packets that have the critical precedence. If you specify the
option number instead of the name, specify number 5.
flash or 3: The ACL matches packets that have the flash precedence. If you specify the option
number instead of the name, specify number 3.
flash-override or 4: The ACL matches packets that have the flash override precedence. If you
specify the option number instead of the name, specify number 4.
immediate or 2: The ACL matches packets that have the immediate precedence. If you specify
the option number instead of the name, specify number 2.
internet or 6: The ACL matches packets that have the internetwork control precedence. If you
specify the option number instead of the name, specify number 6.
network or 7: The ACL matches packets that have the network control precedence. If you
specify the option number instead of the name, specify number 7.
priority or 1: The ACL matches packets that have the priority precedence. If you specify the
option number instead of the name, specify number 1.
routine or 0: The ACL matches packets that have the routine precedence. If you specify the
option number instead of the name, specify number 0.
The tos <name> | <num> parameter of the ip access-list command specifies the IP ToS. You can
specify one of the following:
max-reliability or 2: The ACL matches packets that have the maximum reliability ToS. The
decimal value for this option is 2.
max-throughput or 4: The ACL matches packets that have the maximum throughput ToS. The
decimal value for this option is 4.
min-delay or 8: The ACL matches packets that have the minimum delay ToS. The decimal value
for this option is 8.
min-monetary-cost or 1: The ACL matches packets that have the minimum monetary cost ToS.
The decimal value for this option is 1.
NOTE
This value is not supported on 10 Gigabit Ethernet modules.
normal or 0: The ACL matches packets that have the normal ToS. The decimal value for this
option is 0.
Page view 82
1 2 ... 78 79 80 81 82 83 84 85 86 87 88 ... 148 149

Comments to this Manuals

No comments