8.2.4.5 Add
Security/Network/ACL>Add ?
Description:
Add or modify Access Control Entry (ACE).
If the ACE ID parameter <ace_id> is specified and an entry with this ACE ID
already exists, the ACE will be modified. Otherwise, a new ACE will be added.
If the ACE ID is not specified, the next available ACE ID will be used.
If the next ACE ID parameter <ace_id_next> is specified, the ACE will be placed
before this ACE in the list. If the next ACE ID is not specified, the ACE
will be placed last in the list.
If the Switch keyword is used, the rule applies to all ports.
If the Port keyword is used, the rule applies to the specified port only.
If the Policy keyword is used, the rule applies to all ports configured
with the specified policy. The default is that the rule applies to all ports.
Syntax:
Security Network ACL Add [<ace_id>] [<ace_id_next>]
[(port <port_list>)] [(policy <policy> <policy_bitmask>)]
[<tagged>] [<vid>] [<tag_prio>] [<dmac_type>]
[(etype [<etype>] [<smac>] [<dmac>]) |
(arp [<sip>] [<dip>] [<smac>] [<arp_opcode>] [<arp_flags>]) |
(ip
[<sip>] [<dip>] [<protocol>] [<ip_flags>]) |
(icmp [<sip>] [<dip>] [<icmp_type>] [<icmp_code>] [<ip_flags>]) |
(udp [<sip>] [<dip>] [<sport>] [<dport>] [<ip_flags>]) |
(tcp [<sip>] [<dip>] [<sport>] [<dport>] [<ip_flags>] [<tcp_flags>])]
[permit|deny] [<rate_limiter>] [<port_redirect>] [<mirror>] [<logging>]
[<shutdown>]
Instruction Manual
125