XGS-5240-Series User Manual

Table Of Contents
Configuration Guide of XGS-5240-Series
45-8
access-list <num> {deny | permit} icmp {{<sIpAdd
r> <sMask>} | any-source | {host-source <sIpAdd
r>}} {{<dIpAddr> <dMask>} | any-destination | {ho
st-destination <dIpAddr>}} [<icmp-type> [<icmp-co
de>]] [precedence <prec>] [tos <tos>][time-range<
time-range-name>]
Creates a numbered ICMP ext
ended IP access rule; if the n
umbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.
access-list <num> {deny | permit} igmp {{<sIpAdd
r> <sMask>} | any-source | {host-source <sIpAdd
r>}} {{<dIpAddr> <dMask>} | any-destination | {ho
st-destination <dIpAddr>}} [<igmp-type>] [precede
nce <prec>] [tos <tos>][time-range<time-range-na
me>]
Creates a numbered IGMP ext
ended IP access rule; if the n
umbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.
access-list <num> {deny | permit} tcp {{<sIpAdd
r> <sMask>} | any-source | {host-source <sIpAdd
r>}} [s-port {<sPort> | range <sPortMin> <sPortMa
x>}] {{<dIpAddr> <dMask>} | any-destination | {ho
st-destination <dIpAddr>}} [d-port {<dPort> | rang
e <dPortMin> <dPortMax>}] [ack+fin+psh+rst+urg+
syn] [precedence <prec>] [tos <tos>][time-range<t
ime-range-name>]
Creates a numbered TCP exte
nded IP access rule; if the nu
mbered extended access-list o
f specified number does not e
xist, then an access-list will b
e created using this number.
access-list <num> {deny | permit} udp {{<sIpAdd
r> <sMask>} | any-source | {host-source <sIpAdd
r>}} [s-port {<sPort> | range <sPortMin> <sPortMa
x>}] {{<dIpAddr> <dMask>} | any-destination | {ho
st-destination <dIpAddr>}} [d-port {<dPort> | rang
e <dPortMin> <dPortMax>}] [precedence <prec>]
[tos <tos>][time-range<time-range-name>]
Creates a numbered UDP ext
ended IP access rule; if the n
umbered extended access-list
of specified number does not
exist, then an access-list will
be created using this number.
access-list <num> {deny | permit} {eigrp | gre | i
grp | ipinip | ip | ospf | <protocol-num>} {{<sIpA
ddr> <sMask>} | any-source | {host-source <sIpA
ddr>}} {{<dIpAddr> <dMask>} | any-destination |
{host-destination <dIpAddr>}} [precedence <prec>]
[tos <tos>][time-range<time-range-name>]
Creates a numbered IP extend
ed IP access rule for other sp
ecific IP protocol or all IP prot
ocols; if the numbered extend
ed access-list of specified nu
mber does not exist, then an
access-list will be created usin
g this number.