Administrator Guide

mask Enter a network mask in /prex format (/x) or A.B.C.D. The mask, when specied in
A.B.C.D format, may be either contiguous or non-contiguous.
any Enter the keyword any to specify that all routes are subject to the lter.
host ip-address Enter the keyword host and then enter the IP address to specify a host IP address.
ttl Enter the keyword ttl to permit a packet based on the time to live value. The range is
from 1 to 255.
operator Enter one of the following logical operand:
eq(equal to) — matches packets that contain a ttl value that is equal to the specied
ttl value.
neq(not equal to) — matches packets that contain a ttl value that is not equal to the
specied ttl value.
gt(greater than) — matches packets that contain a ttl value that is greater than the
specied ttl value.
lt (less than) — matches packets that contain a ttl value that is less than the
specied ttl value.
range(inclusive range of values) — matches packets that contain a ttl value that
falls between the specied range of ttl values.
dscp Enter the keyword dscp to deny a packet based on the DSCP value. The range is from 0
to 63.
operator (OPTIONAL) Enter one of the following logical operand:
eq = equal to
neq = not equal to
gt = greater than
lt = less than
range = inclusive range of ports (you must specify two ports for the port
parameter)
port port Enter the application layer port number. Enter two port numbers if you are using the
range logical operand. The range is 0 to 65535.
destination Enter the IP address of the network or host to which the packets are sent.
count (OPTIONAL) Enter the keyword count to count packets processed by the lter.
byte (OPTIONAL) Enter the keyword byte to count bytes processed by the lter.
order (OPTIONAL) Enter the keyword order to specify the QoS priority for the ACL entry.
The range is from 0 to 254 (where 0 is the highest priority and 254 is the lowest; lower-
order numbers have a higher priority). If you do not use the keyword order, the ACLs
have the lowest order by default (255).
fragments Enter the keyword fragments to use ACLs to control packet fragments.
monitor (OPTIONAL) Enter the keyword monitor to describe the trac that you want to
monitor and the ACL in which you are creating the rule is applied to the monitored
interface. For more information, see “Flow-based Monitoring” in the Port Monitoring
section of the Dell Networking OS Conguration Guide.
no-drop Enter the keywords no-drop to match only the forwarded packets.
Defaults Not congured.
Access Control Lists (ACL) 217