C613-50066-01 REV A
Command Reference for IE200 Series Industrial Managed PoE+ Switches
685
AlliedWare Plus™ Operating System - Version 5.4.5I-0.x
IP
V
4 H
ARDWARE
A
CCESS
C
ONTROL
L
IST
(ACL) C
OMMANDS
ACCESS
-
LIST
(
HARDWARE
IP
NUMBERED
)
Syntax [tcp|udp]
access-list <
3000-3699
> {deny|permit|send-to-cpu} {tcp|udp}
<source>
eq <
sourceport
>
<destination>
eq
<destport>
no access-list <
3000-3699
>
Table 22-3:
Parameters in the access-list (hardware IP numbered)
command -
tcp|udp
Parameter
Description
<
3000-3699
>
Hardware IP access-list.
deny
The access-list rejects packets that match the type, source, and
destination filtering specified with this command.
permit
The access-list permits packets that match the type, source, and
destination filtering specified with this command.
send-to-cpu
Specify packets to send to the CPU.
tcp
The access-list matches only TCP packets.
udp
The access-list matches only UDP packets.
<source>
The source address of the packets. You can specify a single host, a
subnet, or all sources. The following are the valid formats for
specifying the source:
any
Matches any source IP address.
host
<ip-addr>
Matches a single source host
with the IP address given by
<ip-
addr>
in dotted decimal
notation.
<
ip-addr
>/<
prefix
>
An IPv4 address, followed by a
forward slash, then the prefix
length. This matches any source
IP address within the specified
subnet.
<
ip-addr
>
<
reverse-mask
>
Alternatively, you can enter a
reverse mask in dotted decimal
format. For example, entering
192.168.1.1 0.0.0.255
is
the same as entering
192.168.1.1/24
.