235
DWS-1008 User’s Manual
D-Link Systems, Inc.
Configuring and Managing Security ACLs
Common IP Protocol Numbers
Number IP Protocol
1
Internet Message Control Protocol (ICMP)
2
Internet Group Management Protocol (IGMP)
6
Transmission Control Protocol (TCP)
9
Any private interior gateway (used by Cisco for Internet
Gateway Routing Protocol)
17
User Datagram Protocol (UDP)
46
Resource Reservation Protocol (RSVP)
47
Generic Routing Encapsulation (GRE) protocol
50
Encapsulation Security Payload for IPSec (IPSec-ESP)
51
Authentication Header for IPSec (IPSec-AH)
55
IP Mobility (Mobile IP)
88
Enhanced Interior Gateway Routing Protocol (EIGRP)
89
Open Shortest Path First (OSPF) protocol
103
Protocol Independent Multicast (PIM) protocol
112
Virtual Router Redundancy Protocol (VRRP)
115
Layer Two Tunneling Protocol (L2TP)
Wildcard Masks
When you specify source and destination IP addresses in an ACE, you must also include a
mask for each in the form
source-ip-addr mask
and
destination-ip-addr mask.
The mask is a wildcard mask. The security ACL checks the bits in IP addresses that correspond
to any
0
s (zeros) in the mask, but does not check the bits that correspond to
1
s (ones) in the
mask. Specify the IP address and wildcard mask in dotted decimal notation. For example, the
IP address and wildcard mask 10.0.0.0 and 0.255.255.255 match all IP addresses that begin
with 10 in the first octet.
Summary of Contents for DWS-1008
Page 1: ......