ACE - TCP Options Window
This
window appears when you choose TCP and click Protocol Options in the
Create ACE - Extended window or the Modify ACE - Extended window.
Use it to specify
additional filtering options for TCP packets.
On the Source Options
tab:
- From the Operator list, select an operator
for
example, eq for equal to
that
will be used with source ports. If you select range, enter a range
of port numbers in the Other/Range field.
Restriction: For Catalyst 2950 switches, eq is the only supported
operator.
Example: Entering '60 80' (without quotes) in the Other/Range
field specifies the range of port 60 to port 80. Instead of using port numbers,
you can enter application names and imply the port numbers that are associated
with the applications. For example, 'bgp cmd' implies the range of port 179
to port 514.
- Select the name of an application from the Port/App list whose port
number is used with the operator you selected in the Operator list.
If you select other, enter a port number in the Other/Range
field.
On the Destination Options tab, repeat the foregoing steps, this time for
filtering on destination ports.
On the TCP
Flags tab:
- From the TCP Flag list,
select a flag (the name of a bit in the TCP header) to be used in filtering TCP
packets. A packet will be filtered only if the bit is on.
To select all the
flags in the list, click Select All. - Click Add
to move your selections to the Selected Flags list.
To remove flags
from this list, select them and click Remove.
To remove all
the flags from the list, click Select All and then Remove.
Restriction: For Catalyst 2950 switches, there is no TCP Flags
tab. TCP flags are not supported.
Click OK when you are done.