09.12.2012 Views

Understanding the network.pdf - Back to Home

Understanding the network.pdf - Back to Home

Understanding the network.pdf - Back to Home

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Interior Gateway Routing Pro<strong>to</strong>col<br />

Open Shortest Path First<br />

Generic Route Encapsulation Tunneling Pro<strong>to</strong>col<br />

IP in IP Tunneling Pro<strong>to</strong>col<br />

Internet Control Message Pro<strong>to</strong>col<br />

Transmission Control Pro<strong>to</strong>col<br />

User Datagram Pro<strong>to</strong>col<br />

Internet Group Management Pro<strong>to</strong>col<br />

Pro<strong>to</strong>col Independent Multicast<br />

igrp<br />

ospf<br />

gre<br />

ipinip<br />

icmp<br />

tcp<br />

udp<br />

igmp<br />

Opera<strong>to</strong>r/port-value pair matches are available when ACL entries use a specific<br />

pro<strong>to</strong>col type. When you create packet filter ACLs, you will generally use specific<br />

TCP and UDP opera<strong>to</strong>r/port-value pair matches. Table 9.3 lists <strong>the</strong> various opera<strong>to</strong>rs<br />

available for each of <strong>the</strong> IP pro<strong>to</strong>col options.<br />

NOTE<br />

Table 9.3 does not list <strong>the</strong> opera<strong>to</strong>r matches for ICMP, which are quite extensive.<br />

For more information, you can use <strong>the</strong> IOS inline help <strong>to</strong> get a list of <strong>the</strong> command<br />

options: . For additional information,<br />

see <strong>the</strong> references listed at <strong>the</strong> end of <strong>the</strong> chapter.<br />

Table 9.3. Extended IP ACL Opera<strong>to</strong>rs<br />

ACL Opera<strong>to</strong>rFunction Pro<strong>to</strong>col<br />

Availability<br />

established Match established connection-oriented VC connections TCP<br />

eq Match on a transport port number TCP, UDP<br />

gt Match packets with a greater port number TCP, UDP<br />

lt Match only packets with a lower port number TCP, UDP<br />

neq Match only packets not on a given port number TCP, UDP<br />

range Match only packets in <strong>the</strong> range of port numbers TCP, UDP<br />

dvmrp Distance Vec<strong>to</strong>r Multicast Routing Pro<strong>to</strong>col, used with IGMP<br />

mrouted for MBONE routing<br />

host-query Multicast host query IGMP<br />

host-report Multicast host report IGMP<br />

pim Pro<strong>to</strong>col Independent Multicast IGMP<br />

pim

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!