User's Manual

Chapter 3 - Operation and Administration Using the CLI NPU Configuration
4Motion 173 System Manual
Additional Extended ACLs are created automatically for every Service Group that
is associated with a VLAN Service Interface and an enabled VLAN Service. Up to
10 ACLs, numbered ACL 187 to ACL 196, can be created, These automatically
created/deleted ACLs allow Ping and DHCP traffic on the DHCP Own IP Address
interface of the applicable VLAN service:
Permit Any Any Bearer IP address 2231 (used
for WiMAX
ASN Control
Plane
Protocol)
UDP (17)
Permit Any Any Bearer IP address 1812-1813
(used for
RADIUS
Authenticatio
n and
Accounting)
UDP (17)
Permit Any Any Bearer IP address 69 (used for
TFTP)
UDP (17)
Permit Any Any Bearer IP address 1022-1023
(used for
software
download)
UDP (17)
Table 3-18: Rules of Default VLAN Service Interfaces ACL 187-196
Rule Action Source IP
Address
Source
Port
Destination IP
Address
Destination
Port
Protocol
Permit Any Any DHCP Own IP Address
defined for the
applicable Service
Group
Any ICMP (1)
Permit Any Any DHCP Own IP Address
defined for the
applicable Service
Group
67-68 (used
for DHCP
traffic)
UDP (17)
Table 3-17: Rules of Default ACL 186
Rule Action Source IP
Address
Source
Port
Destination IP
Address
Destination
Port
Protocol