Reference Guide (Supporting software release 5.5.0.0 and later) Owner manual

Brocade Mobility RFS Controller CLI Reference Guide 893
53-1003098-01
12
deny
ip-access-list
Creates a deny rule that rejects packets from a specified source IP and/or to a specified
destination IP. You can also use this command to modify an existing deny rule.
NOTE
Use a decimal value representation to implement a permit/deny designation for a packet. The
command set for IP ACLs provides the hexadecimal values for each listed EtherType. Use the decimal
equivalent of the EtherType listed for any other EtherType.
Supported in the following platforms:
Access Points — Brocade Mobility 650 Access Point, Brocade Mobility 6511 Access Point,
Brocade Mobility 1220 Access Point, Brocade Mobility 71XX Access Point, Brocade
Mobility 1240 Access Point
Wireless Controllers — Brocade Mobility RFS4000, Brocade Mobility RFS6000, Brocade
Mobility RFS7000
Service Platforms — Brocade Mobility RFS9510
Syntax:
deny [<NETWORK-SERVICE-ALIAS-NAME>|icmp|ip|proto|tcp|udp]
deny <NETWORK-SERVICE-ALIAS-NAME>
[<SOURCE-IP/MASK>|<NETWORK-GROUP-ALIAS-NAME>|any|
from-vlan <VLAN-ID>|host <SOURCE-HOST-IP>] [<DEST-IP/MASK>|any|host
<DEST-HOST-IP>|
<NETWORK-GROUP-ALIAS-NAME>] (log,mark [8021p <0-7>|dscp <0-63>],
rule-precedence <1-5000>) {(rule-description <LINE>)}
clrscr Clears the display screen page 385
commit Commits (saves) changes made in the current session page 386
end Ends and exits the current mode and moves to the PRIV EXEC mode page 234
exit Ends the current mode and moves to the previous mode page 387
help Displays the interactive help system page 387
revert Reverts changes to their last saved configuration page 394
service Invokes service commands to troubleshoot or debug
(config-if) instance
configurations
page 394
show Displays running system information page 429
write Writes information to memory or terminal page 425
TABLE 10 IP-Access-List-Config Commands
Command Description Reference