icmp-name icmp-type icmp-code Echo 8 0 Echo-reply 0 0 Parameter-problem 12 0 Port-unreachable 3 3 Protocol-unreachable 3 2 Reassembly-timeout 11 1 Source-quench 4 0 Source-route-failed 3 5 Timestamp-reply 14 0 Timestamp-request 13 0 ...
对于单向流量的控制,一般来说是属于防火墙的功能。但实际上,交换机也是可以通过ACL的灵活配置,来实现最基本的单向流量控制。具体配置如下:对于ICMP协议,需要允许B->A的icmp echo-reply报文: # acl 3001 rule 5 permit icmp source Y.Y.Y.Y 0.0.0.255 destination X.X.X.X 0.0.0.255 icmp-type echo-reply...
[AR4-aaa]local-user admin password cipher 123 [AR4-aaa]local-user admin service-type ssh [AR4-aaa]local-user admin privilege level 15 [AR4]stelnet server enable [AR4]ssh user admin authentication-type password [AR4]ssh client first-time enable 3.测试:在AR1和AR3.上均可以远程管理到AR...
当协议类型选择为ICMP时,用户也可以直接在icmp-type参数后输入ICMP的消息名称。在几种常见的ICMP消息如表1-12所示。 表1-12 ICMP消息 名称 ICMP TYPE ICMP CODE echo Type=8 Code=0 echo-reply Type=0 Code=0 fragmentneed-DFset Type=3 Code=4 host-redirect Type=5 Code=1 host-tos-redirect ...
icmp-type:ICMP消息类型,取值范围为0~255 icmp-code:ICMP消息码,取值范围为0~255 icmp-message:ICMP消息名称。可以输入的ICMP消息名称,及其与消息类型和消息码的对应关系如表1-5所示 表1-5 ICMP消息名称与消息类型和消息码的对应关系 ICMP消息名称 ICMP消息类型 ICMP消息码 echo 8 0 echo-reply 0 0 fra...
icmp协议里,不止ping一个报文,所以要精确到ping的话,必须指定出哪个代表ping,echo代表ping的request R1(config)#access-list 100 permit icmp host 192.168.1.10 host 1.1.1.1 ?<0-255> ICMP message type administratively-prohibited Administratively prohibited ...
[[icmp-type] [icmp-code] | [icmp-message]] [precedence precedence] [tos tos] [log | log-input] [time-range time-range-name][fragments] 传输控制协议 (TCP) access-list access-list-number [dynamic dynamic-name [timeout minutes]] {deny | permit} tcp source source-wildcard [operator [po...
[H3C-acl-adv-3000]rule 0 deny tcp syn 1 ack 1 source 192.168.100.0 0.0.0.255 destination 192.168.200.0 0.0.0.255 [H3C-acl-adv-3000]rule 5 deny icmp source 192.168.100.0 0.0.0.255 destination 192.168.200.0 0.0.0.255 icmp-type echo-reply [H3C-acl-adv-3000]qu 4. 在g1/0/10上调用进方向...
H3C/HUAWEIacl经典配置适合小企业、网吧等。 aclnumber3003 rule1denytcpsource-porteq135 rule2denyudpsource-porteq135 rule3denytcpsource-porteq137 rule4denytcpsource-porteq138 rule5denytcpsource-porteq389 rule6denytcpsource-porteq593 rule7denyudpsource-porteq445 rule8denytcpsource-porteq1025 rule...
#ping;发ECHO包 #telnet;远程登录 最新版华为交换机配置命令集合:路由器命令 [Quidway]displayversion;显示版本信息 [Quidway]displaycurrent-configuration;显示当前配置 [Quidway]displayinterfaces;显示接口信息 [Quidway]displayiproute;显示路由信息 [Quidway]sysnameaabbcc;更改主机名 ...