deny (IPv4)
S e n d c o m m e n t s t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
port-unreachable—Port unreachable
precedence-unreachable—Precedence cutoff
protocol-unreachable—Protocol unreachable
reassembly-timeout—Reassembly timeout
redirect—All redirects
router-advertisement—Router discovery advertisements
router-solicitation—Router discovery solicitations
source-quench—Source quenches
source-route-failed—Source route failed
time-exceeded—All time-exceeded messages
timestamp-reply—Time-stamp replies
timestamp-request—Time-stamp requests
ttl-exceeded—TTL exceeded
unreachable—All unreachables
TCP Port Names
When you specify the protocol argument as tcp, the port argument can be a TCP port number, which is
an integer from 0 to 65535. It can also be one of the following keywords:
bgp—Border Gateway Protocol (179)
chargen—Character generator (19)
cmd—Remote commands (rcmd, 514)
daytime—Daytime (13)
discard—Discard (9)
domain—Domain Name Service (53)
drip—Dynamic Routing Information Protocol (3949)
echo—Echo (7)
exec—EXEC (rsh, 512)
finger—Finger (79)
ftp—File Transfer Protocol (21)
ftp-data—FTP data connections (2)
gopher—Gopher (7)
hostname—NIC hostname server (11)
ident—Ident Protocol (113)
irc—Internet Relay Chat (194)
klogin—Kerberos login (543)
kshell—Kerberos shell (544)
login—Login (rlogin, 513)
Cisco Nexus 5000 Series Command Reference
Chapter 6
Security Commands