deny (IPv4)
S e n d c o m m e n t s t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
port-unreachable—Port unreachable
•
precedence-unreachable—Precedence cutoff
•
protocol-unreachable—Protocol unreachable
•
reassembly-timeout—Reassembly timeout
•
redirect—All redirects
•
router-advertisement—Router discovery advertisements
•
router-solicitation—Router discovery solicitations
•
source-quench—Source quenches
•
source-route-failed—Source route failed
•
time-exceeded—All time-exceeded messages
•
timestamp-reply—Time-stamp replies
•
•
timestamp-request—Time-stamp requests
•
traceroute—Traceroute
•
ttl-exceeded—TTL exceeded
unreachable—All unreachables
•
TCP Port Names
When you specify the protocol argument as tcp, the port argument can be a TCP port number, which is
an integer from 0 to 65535. It can also be one of the following keywords:
bgp—Border Gateway Protocol (179)
chargen—Character generator (19)
cmd—Remote commands (rcmd, 514)
daytime—Daytime (13)
discard—Discard (9)
domain—Domain Name Service (53)
drip—Dynamic Routing Information Protocol (3949)
echo—Echo (7)
exec—EXEC (rsh, 512)
finger—Finger (79)
ftp—File Transfer Protocol (21)
ftp-data—FTP data connections (2)
gopher—Gopher (7)
hostname—NIC hostname server (11)
ident—Ident Protocol (113)
irc—Internet Relay Chat (194)
klogin—Kerberos login (543)
kshell—Kerberos shell (544)
login—Login (rlogin, 513)
Cisco Nexus 5000 Series Command Reference
6-22
Chapter 6
Security Commands
OL-16599-01