Object Group Service
Service object groups define named collections of protocols and port configurations that can be referenced in access control lists. They support TCP, UDP, and TCP-UDP port matching with operators (eq, gt, lt), port ranges, source/destination combinations, protocol flags, and ICMP types. Service groups can also nest other service groups using group objects.
Diagram
Section titled “Diagram”Classes
Section titled “Classes”configuration (iosxe.devices)
Section titled “configuration (iosxe.devices)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| object_groups_service | List | [object_groups_service] | No |
object_groups_service (iosxe.devices.configuration)
Section titled “object_groups_service (iosxe.devices.configuration)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| name | String | Yes | ||
| description | String | No | ||
| group_objects | List | String | No | |
| protocol_numbers | List | Integer[min: 0, max: 255] | No | |
| ahp | Boolean | true, false | No | |
| eigrp | Boolean | true, false | No | |
| esp | Boolean | true, false | No | |
| gre | Boolean | true, false | No | |
| icmp | Boolean | true, false | No | |
| igmp | Boolean | true, false | No | |
| ip | Boolean | true, false | No | |
| ipinip | Boolean | true, false | No | |
| nos | Boolean | true, false | No | |
| ospf | Boolean | true, false | No | |
| pcp | Boolean | true, false | No | |
| pim | Boolean | true, false | No | |
| tcp_protocol | Boolean | true, false | No | |
| udp_protocol | Boolean | true, false | No | |
| icmp_port_number | Integer | min: 0, max: 255 | No | |
| icmp_alternate_address | Boolean | true, false | No | |
| icmp_conversion_error | Boolean | true, false | No | |
| icmp_echo | Boolean | true, false | No | |
| icmp_echo_reply | Boolean | true, false | No | |
| icmp_information_reply | Boolean | true, false | No | |
| icmp_information_request | Boolean | true, false | No | |
| icmp_mask_reply | Boolean | true, false | No | |
| icmp_mask_request | Boolean | true, false | No | |
| icmp_mobile_redirect | Boolean | true, false | No | |
| icmp_parameter_problem | Boolean | true, false | No | |
| icmp_redirect | Boolean | true, false | No | |
| icmp_router_advertisement | Boolean | true, false | No | |
| icmp_router_solicitation | Boolean | true, false | No | |
| icmp_source_quench | Boolean | true, false | No | |
| icmp_time_exceeded | Boolean | true, false | No | |
| icmp_timestamp_reply | Boolean | true, false | No | |
| icmp_timestamp_request | Boolean | true, false | No | |
| icmp_traceroute | Boolean | true, false | No | |
| icmp_unreachable | Boolean | true, false | No | |
| tcp_dst_ports | List | [tcp_dst_ports] | No | |
| tcp_dst_port_list | List | String | No | |
| tcp_dst_port_ranges | List | [tcp_dst_port_ranges] | No | |
| tcp_src_ports | List | [tcp_src_ports] | No | |
| tcp_src_port_list | List | String | No | |
| tcp_src_port_ranges | List | [tcp_src_port_ranges] | No | |
| tcp_src_dst_ports_op | List | [tcp_src_dst_ports_op] | No | |
| tcp_src_dst_port_list | List | [tcp_src_dst_port_list] | No | |
| tcp_src_dst_ports_src_op | List | [tcp_src_dst_ports_src_op] | No | |
| tcp_src_dst_ports_dst_op | List | [tcp_src_dst_ports_dst_op] | No | |
| tcp_src_range_dst_ports_op | List | [tcp_src_range_dst_ports_op] | No | |
| tcp_src_range_dst_port_list | List | [tcp_src_range_dst_port_list] | No | |
| tcp_src_dst_range_ports_op | List | [tcp_src_dst_range_ports_op] | No | |
| tcp_src_dst_range_port_list | List | [tcp_src_dst_range_port_list] | No | |
| tcp_src_range_dst_range_port_list | List | [tcp_src_range_dst_range_port_list] | No | |
| udp_dst_ports | List | [udp_dst_ports] | No | |
| udp_dst_port_list | List | String | No | |
| udp_dst_port_ranges | List | [udp_dst_port_ranges] | No | |
| udp_src_ports | List | [udp_src_ports] | No | |
| udp_src_port_list | List | String | No | |
| udp_src_port_ranges | List | [udp_src_port_ranges] | No | |
| udp_src_dst_ports_op | List | [udp_src_dst_ports_op] | No | |
| udp_src_dst_port_list | List | [udp_src_dst_port_list] | No | |
| udp_src_dst_ports_src_op | List | [udp_src_dst_ports_src_op] | No | |
| udp_src_dst_ports_dst_op | List | [udp_src_dst_ports_dst_op] | No | |
| udp_src_range_dst_ports_op | List | [udp_src_range_dst_ports_op] | No | |
| udp_src_range_dst_port_list | List | [udp_src_range_dst_port_list] | No | |
| udp_src_dst_range_ports_op | List | [udp_src_dst_range_ports_op] | No | |
| udp_src_dst_range_port_list | List | [udp_src_dst_range_port_list] | No | |
| udp_src_range_dst_range_port_list | List | [udp_src_range_dst_range_port_list] | No | |
| tcp_udp_dst_ports | List | [tcp_udp_dst_ports] | No | |
| tcp_udp_dst_port_list | List | String | No | |
| tcp_udp_dst_port_ranges | List | [tcp_udp_dst_port_ranges] | No | |
| tcp_udp_src_ports | List | [tcp_udp_src_ports] | No | |
| tcp_udp_src_port_list | List | String | No | |
| tcp_udp_src_port_ranges | List | [tcp_udp_src_port_ranges] | No | |
| tcp_udp_src_dst_ports_op | List | [tcp_udp_src_dst_ports_op] | No | |
| tcp_udp_src_dst_port_list | List | [tcp_udp_src_dst_port_list] | No | |
| tcp_udp_src_dst_ports_src_op | List | [tcp_udp_src_dst_ports_src_op] | No | |
| tcp_udp_src_dst_ports_dst_op | List | [tcp_udp_src_dst_ports_dst_op] | No | |
| tcp_udp_src_range_dst_ports_op | List | [tcp_udp_src_range_dst_ports_op] | No | |
| tcp_udp_src_range_dst_port_list | List | [tcp_udp_src_range_dst_port_list] | No | |
| tcp_udp_src_dst_range_ports_op | List | [tcp_udp_src_dst_range_ports_op] | No | |
| tcp_udp_src_dst_range_port_list | List | [tcp_udp_src_dst_range_port_list] | No | |
| tcp_udp_src_range_dst_range_port_list | List | [tcp_udp_src_range_dst_range_port_list] | No |
tcp_dst_ports (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_dst_ports (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_dst_port_ranges (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_dst_port_ranges (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_ports (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_ports (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_port_ranges (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_port_ranges (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_dst_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_dst_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_dst_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_dst_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_dst_ports_src_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_dst_ports_src_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_dst_ports_dst_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_dst_ports_dst_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_range_dst_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_range_dst_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_range_dst_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_range_dst_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_dst_range_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_dst_range_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_dst_range_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_dst_range_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_src_range_dst_range_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_src_range_dst_range_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_dst_ports (iosxe.devices.configuration.object_groups_service)
Section titled “udp_dst_ports (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_dst_port_ranges (iosxe.devices.configuration.object_groups_service)
Section titled “udp_dst_port_ranges (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_ports (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_ports (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_port_ranges (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_port_ranges (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_dst_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_dst_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_dst_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_dst_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_dst_ports_src_op (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_dst_ports_src_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_dst_ports_dst_op (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_dst_ports_dst_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_range_dst_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_range_dst_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_range_dst_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_range_dst_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_dst_range_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_dst_range_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_dst_range_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_dst_range_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
udp_src_range_dst_range_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “udp_src_range_dst_range_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_dst_ports (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_dst_ports (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_dst_port_ranges (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_dst_port_ranges (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_ports (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_ports (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_port_ranges (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_port_ranges (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_dst_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_dst_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_dst_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_dst_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_dst_ports_src_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_dst_ports_src_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_dst_ports_dst_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_dst_ports_dst_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_range_dst_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_range_dst_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| operator | Choice | eq, gt, lt | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_range_dst_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_range_dst_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_dst_range_ports_op (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_dst_range_ports_op (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| operator | Choice | eq, gt, lt | Yes | |
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_dst_range_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_dst_range_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
tcp_udp_src_range_dst_range_port_list (iosxe.devices.configuration.object_groups_service)
Section titled “tcp_udp_src_range_dst_range_port_list (iosxe.devices.configuration.object_groups_service)”| Name | Type | Constraint | Mandatory | Default Value |
|---|---|---|---|---|
| src_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| src_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_min_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes | |
| dst_max_port | Any | String or Integer or String[Regex: ^.*[\$\%]\{.*$] | Yes |
Sample Configuration: UDP destination ports
Section titled “Sample Configuration: UDP destination ports”object-group service ser-Syslog description Syslog Server udp eq syslog!object-group service ser-SNMP description SNMP udp eq snmp udp eq snmptrap!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-Syslog description: Syslog Server udp_dst_ports: - operator: eq port: syslog - name: ser-SNMP description: SNMP udp_dst_ports: - operator: eq port: snmp - operator: eq port: snmptrapSample Configuration: TCP-UDP destination ports
Section titled “Sample Configuration: TCP-UDP destination ports”object-group service ser-RDP description Remote Desktop tcp-udp eq 3389!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-RDP description: Remote Desktop tcp_udp_dst_ports: - operator: eq port: 3389Sample Configuration: TCP destination port ranges
Section titled “Sample Configuration: TCP destination port ranges”object-group service ser-HighPorts description High port range tcp range 1024 2048!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-HighPorts description: High port range tcp_dst_port_ranges: - min_port: 1024 max_port: 2048Sample Configuration: Protocol flags
Section titled “Sample Configuration: Protocol flags”object-group service ser-Tunnels description Tunnel protocols ahp esp gre!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-Tunnels description: Tunnel protocols ahp: true esp: true gre: trueSample Configuration: ICMP types
Section titled “Sample Configuration: ICMP types”object-group service ser-ICMP-Diag description ICMP diagnostics icmp echo icmp echo-reply icmp unreachable!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-ICMP-Diag description: ICMP diagnostics icmp_echo: true icmp_echo_reply: true icmp_unreachable: trueSample Configuration: Nested group objects
Section titled “Sample Configuration: Nested group objects”object-group service ser-Maintenance description Maintenance Services group-object ser-Syslog group-object ser-SNMP group-object ser-RDP!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-Maintenance description: Maintenance Services group_objects: - ser-Syslog - ser-SNMP - ser-RDPSample Configuration: IP protocol numbers
Section titled “Sample Configuration: IP protocol numbers”object-group service ser-Protocols description Raw IP protocols 47 51 89!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-Protocols description: Raw IP protocols protocol_numbers: - 47 - 51 - 89Sample Configuration: Granular ICMP types and numeric type
Section titled “Sample Configuration: Granular ICMP types and numeric type”object-group service ser-ICMP-Detailed description Detailed ICMP types icmp 3 icmp redirect icmp time-exceeded icmp router-advertisement!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-ICMP-Detailed description: Detailed ICMP types icmp_port_number: 3 icmp_redirect: true icmp_time_exceeded: true icmp_router_advertisement: trueSample Configuration: Source and destination port combinations
Section titled “Sample Configuration: Source and destination port combinations”object-group service ser-SrcDst description Source/destination port matching tcp source eq 1000 destination eq 2000 tcp source range 3000 3100 destination eq 4000 udp source gt 1102 destination 2102 tcp-udp source 1201 destination range 7000 7100!Example Code:
Section titled “Example Code:”iosxe: devices: - name: ROUTER-1 configuration: object_groups_service: - name: ser-SrcDst description: Source/destination port matching tcp_src_dst_ports_op: - src_operator: eq src_port: 1000 dst_operator: eq dst_port: 2000 tcp_src_range_dst_ports_op: - src_min_port: 3000 src_max_port: 3100 operator: eq dst_port: 4000 udp_src_dst_ports_src_op: - src_operator: gt src_port: 1102 dst_port: 2102 tcp_udp_src_dst_range_port_list: - src_port: 1201 dst_min_port: 7000 dst_max_port: 7100