User's Manual

Table Of Contents
Configuration Guide of XGS-5240-Series
45-14
k>}}{any-destination-mac|{host-destination-mac <h
ost_dmac>}|{<dmac><dmac-mask>}}tcp {{<source>
<source-wildcard>}|any-source| {host-source<sour
ce-host-ip>}} [s-port {<port1> | range <sPortMin>
<sPortMax>}] {{<destination><destination-wildcar
d>}|any-destination| {host-destination <destination-
host-ip>}} [d-port {<port3> | range <dPortMin> <d
PortMax>}] [ack+fin+psh+rst+urg+syn] [precedence
<precedence>] [tos <tos>][time-range<time-range-
name>]
ule; if the numbered extend
ed access-list of specified n
umber does not exist, then
an access-list will be create
d using this number.
access-list<num>{deny|permit}{any-source-mac| {h
ost-source-mac<host_smac>}|{<smac><smac-mas
k>}}{any-destination-mac|{host-destination-mac <h
ost_dmac>}|{<dmac><dmac-mask>}}udp {{<sourc
e><source-wildcard>}|any-source| {host-source<so
urce-host-ip>}} [s-port {<port1> | range <sPortMi
n> <sPortMax>}] {{<destination><destination-wildc
ard>}|any-destination| {host-destination<destinatio
n-host-ip>}} [d-port {<port3> | range <dPortMin> <
dPortMax>}] [precedence <precedence>] [tos <to
s>][time-range<time-range-name>]
Creates a numbered mac-u
dp extended mac-ip access
rule; if the numbered exten
ded access-list of specified
number does not exist, then
an access-list will be creat
ed using this number.
access-list<num>{deny|permit}{any-source-mac| {h
ost-source-mac<host_smac>}|{<smac><smac-mas
k>}} {any-destination-mac|{host-destination-mac <h
ost_dmac>}|{<dmac><dmac-mask>}} {eigrp|gre|igrp
|ip|ipinip|ospf|{<protocol-num>}} {{<source><sourc
e-wildcard>}|any-source| {host-source<source-hos
t-ip>}} {{<destination><destination-wildcard>}|any-d
estination| {host-destination<destination-host-ip>}}
[precedence <precedence>] [tos <tos>][time-r
ange<time-range-name>]
Creates a numbered extend
ed mac-ip access rule for o
ther specific mac-ip protocol
or all mac-ip protocols; if t
he numbered extended acc
ess-list of specified number
does not exist, then an acc
ess-list will be created usin
g this number.
no access-list <num>
Deletes this numbered exte
nded MAC-IP access rule.
(9) Configuring a extended MAC-IP access-list based on nomenclature
a. Create an extensive MAC-IP access-list based on nomenclature
Command
Explanation
Global Mode