ACE - TCP Options Window

This window appears when you choose TCP and click Protocol Options in the Create ACE - Extended window or the Modify ACE - Extended window. Use it to specify additional filtering options for TCP packets.

On the Source Options tab:

  1. From the Operator list, select an operatorfor example, eq for equal tothat will be used with source ports. If you select range, enter a range of port numbers in the Other/Range field.
    Restriction: For Catalyst 2950 switches, eq is the only supported operator.
    Example: Entering '60 80' (without quotes) in the Other/Range field specifies the range of port 60 to port 80. Instead of using port numbers, you can enter application names and imply the port numbers that are associated with the applications. For example, 'bgp cmd' implies the range of port 179 to port 514.
  2. Select the name of an application from the Port/App list whose port number is used with the operator you selected in the Operator list. If you select other, enter a port number in the Other/Range field.

On the Destination Options tab, repeat the foregoing steps, this time for filtering on destination ports.

On the TCP Flags tab:

  1. From the TCP Flag list, select a flag (the name of a bit in the TCP header) to be used in filtering TCP packets. A packet will be filtered only if the bit is on.
    To select all the flags in the list, click Select All.
  2. Click Add to move your selections to the Selected Flags list.
    To remove flags from this list, select them and click Remove.
    To remove all the flags from the list, click Select All and then Remove.

Restriction: For Catalyst 2950 switches, there is no TCP Flags tab. TCP flags are not supported.

Click OK when you are done.