DGS-3710 Series Layer 2 Managed Gigabit Switch CLI Reference Guide
94
tcp
- Specifies TCP.
src_port
- (Optional) Specifies the TCP source port range.
<value 0-65535>
- Specifies the value between 0 and 65535.
mask
- (Optional) Specifies the mask.
<hex 0x0-0xffff>
- Specifies the mask.
dst_port
- (Optional) Specifies the TCP destination port range.
<value 0-65535>
- Specifies the value between 0 and 65535.
mask
- (Optional) Specifies the mask.
<hex 0x0-0xffff>
- Specifies the mask.
udp
- Specifies UDP.
src_port
- (Optional) Specifies the UDP source port range.
<value 0-65535>
- Specifies the value between 0 and 65535.
mask
- (Optional) Specifies the mask.
<hex 0x0-0xffff>
- Specifies the mask.
dst_port
- (Optional) Specifies the UDP destination port range.
<value 0-65535>
- Specifies the value between 0 and 65535.
mask
- Specifies the mask.
<hex 0x0-0xffff>
- Specifies the mask.
source_ipv6
- Specifies the value of the IPv6 source address.
<ipv6addr>
- Specifies the value of the IPv6 source address.
mask
- (Optional) Specifies the mask.
<ipv6mask>
- Specifies the mask.
destination_ipv6
- Specifies the value of the IPv6 destination address.
<ipv6addr>
- Specifies the value of the IPv6 destination address.
mask
- (Optional) Specifies the mask.
<ipv6mask>
- Specifies the mask.
port
- The access profile rule may be defined for each port on the switch.
<portlist>
- Specifies a list of ports.
all
- Specifies that the access rule will apply to all ports.
vlan_based
- Specifies the VLAN-based ACL rule. There are two conditions: this rule will
apply to all ports and packets must belong to the configured VLAN. It can be specified by
VLAN name or VLAN ID.
vlan_name
- Specifies the VLAN name.
<vlan_name 32>
- Specifies the VLAN name. The maximum length is 32 characters.
vlan_id
- Specifies the VLAN ID.
<vlanid 1-4094>
- Specifies the VLAN ID between 1 and 4094.
permit
- Specifies the packets that match the access profile are permit by the switch.
priority
- (Optional) Specifies the packets that match the access profile are remap the
802.1p priority tag field by the switch.
<value 0-7>
- Specifies the value between 0 and 7.
replace_priority
- (Optional) Specifies the packets that match the access profile
remarking the 802.1p priority tag field by the switch.
replace_dscp_with
- (Optional) Specifies the DSCP of the packets that match the access
profile are modified according to the value.
<value 0-63>
- Specifies the value between 0 and 63.
replace_tos_precedence_with
- (Optional) Specifies that the IP precedence of the
outgoing packet is changed with the new value. If used without an action priority, the
packet is sent to the default TC.
<value 0-7>
- Specifies the value between 0 and 7.
counter
- (Optional)
enable
- Specifies whether the ACL counter feature is enabled. If the rule is not bound
with the flow meter, all matching packets are counted. If the rule is bound with the
flow meter, then the “counter” is overridden.
disable
- Specifies whether the ACL counter feature is disabled. The default option is
disabled.
mirror
- Specifies that packets matching the access profile are copied to the mirror port.
deny
- Specifies the packets that match the access profile are filtered by the switch.
time_range
- (Optional) Specifies the name of this time range entry.
<range_name 32>
- Specifies the name of this time range entry. The maximum length is
32 characters.