Cisco Cisco Packet Data Gateway (PDG) トラブルシューティングガイド
ACL Configuration Mode Commands
redirect css service (for downlink, by IP packets) ▀
Cisco ASR 5000 Series Command Line Interface Reference ▄
OL-22947-02
The IP address of the destination host to filter against expressed in dotted decimal notation.
The IP address(es) to which the packet is to be sent.
This option is used to filter all packets to a specific IP address or a group of IP addresses.
When specifying a group of addresses, the initial address is configured using this parameter. The range can
then be configured using the
This option is used to filter all packets to a specific IP address or a group of IP addresses.
When specifying a group of addresses, the initial address is configured using this parameter. The range can
then be configured using the
parameter.
This option is used in conjunction with the
option to specify a group of addresses for which
packets are to be filtered.
The mask must be entered as a complement:
The mask must be entered as a complement:
Zero-bits in this parameter mean that the corresponding bits configured for the
parameter must be identical.
One-bits in this parameter mean that the corresponding bits configured for the
parameter must be ignored.
Important:
The mask must contain a contiguous set of one-bits from the least significant bit (LSB). Therefore,
allowed masks are 0, 1, 3, 7, 15, 31, 63, 127, and 255. For example, acceptable wildcards are 0.0.0.3, 0.0.0.255, and
0.0.15.255. A wildcard of 0.0.7.15 is not acceptable since the one-bits are not contiguous.
0.0.15.255. A wildcard of 0.0.7.15 is not acceptable since the one-bits are not contiguous.
Indicates packet redirection is to be applied to IP packet fragments only.
Usage
Block IP packets when the source and destination are of interest.
Important:
A maximum of 16 rule definitions can be configured per ACL. Also note that ―redirect‖ rule
definitions are ignored for ACLs applied to specific subscribers or all subscribers facilitated by a specific context.
Example
The following command defines a rule definition that redirects packets to the charging service named
The following command defines a rule definition that redirects packets to the charging service named
, and
downlink IP packets coming from the host with the IP address
, and fragmented packets for any
destination are matched:
The following sets the insertion point before the rule definition above:
The following command sets the insertion point after the first rule definition above: