ZXR105250SeriesCommandReference
Guidelines
TheIPv6-UDPrulecanmatchsource-speciedIPv6,anysourceIPv6,
destination-speciedIPv6,anydestinationIPv6,UDPsourceportnumbers,UDP
destinationportnumbers,andVLANelds.
4.13.72egress-aclhybridruletype-tcp
Purpose
ThiscommandsetstherulethatthehybridegressACLmatchesIPv4-TCPpackets.
CommandMode
HybridegressACLcongurationmode
Syntax
rule<1-500>{permit|deny}tcp{<source-ipaddr><sip-mask>|any}[source-port<0-65535><s
port-mask>]{<destination-ipaddr><dip-mask>|any}[dest-port<0-65535><dport-mask>][dscp
<0-63>][fragment][cos<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|any][<de
st-mac><dmac-mask>|any]
ParameterDescription
ParameterDescription
<1-500>Rulenumber.
permitIftheconditionmatches,accessispermitted.
denyIftheconditionmatches,accessisdenied.
tcp
ThisruleisonlyvalidforTCPpacket.Otherpacketsignorethis
rule.
<source-ipaddr>
IPaddressofthesourcenetworkorhosttransmittingpackets.Itis
a32-bitIPaddressexpressedindotteddecimalnotation.
<sip-mask>
Sourcemaskandusedforsource.Itisa32-bitIPaddress
expressedindotteddecimalnotation.
source-port<0-65535>
TCPsourceportnumberofthetransmittedpacket
Theparametersofsource-portcanresolvethesomeknownport
numbers.Alsotheportnumberandmaskcanbedirectlyinputted.
<sport-mask>Sourceportmask.
any(rst)
Theanykeywordisusedastheabbreviationofthesource0.0.0.0
andthesourcemask0.0.0.0.
<destination-ipaddr>
Destinationnetworkorhostofthetransmittedpacket.Itisa32-bit
IPaddressexpressedindotteddecimalnotation.
4-286
SJ-20131111172707-003|2013-11-27(R1.0)ZTEProprietaryandCondential