seq 50 deny 10.10.0.0 /16
Dell#
The following example shows how the
seq
command orders the filters according to the sequence
number assigned. In the example, filter 25 was configured before filter 15, but the
show config
command displays the filters in the correct order.
Dell(config-std-nacl)#seq 25 deny ip host 10.5.0.0 any log
Dell(config-std-nacl)#seq 15 permit tcp 10.3.0.0 /16 any
Dell(config-std-nacl)#show config
!
ip access-list standard dilling
seq 15 permit tcp 10.3.0.0/16 any
seq 25 deny ip host 10.5.0.0 any log
Dell(config-std-nacl)#
To delete a filter, use the
no seq sequence-number
command in IP ACCESS LIST mode.
If you are creating a standard ACL with only one or two filters, you can let Dell Networking OS assign a
sequence number based on the order in which the filters are configured. The software assigns filters in
multiples of 5.
Configuring a Standard IP ACL Filter
If you are creating a standard ACL with only one or two filters, you can let Dell Networking OS assign a
sequence number based on the order in which the filters are configured. The software assigns filters in
multiples of five.
1.
Configure a standard IP ACL and assign it a unique name.
CONFIGURATION mode
ip access-list standard
access-list-name
2.
Configure a drop or forward IP ACL filter.
CONFIG-STD-NACL mode
{deny | permit} {
source
[
mask
] | any | host
ip-address
} [count [byte] [dscp]
[order] [fragments]
When you use the
log
keyword, the CP logs details about the packets that match. Depending on how
many packets match the log entry and at what rate, the CP may become busy as it has to log these
packets’ details.
The following example shows a standard IP ACL in which Dell Networking OS assigns the sequence
numbers. The filters were assigned sequence numbers based on the order in which they were configured
(for example, the first filter was given the lowest sequence number). The
show config
command in IP
ACCESS LIST mode displays the two filters with the sequence numbers 5 and 10.
Example of Viewing a Filter Sequence for a Specified Standard ACL and for an Interface
Dell(config-route-map)#ip access standard kigali
Dell(config-std-nacl)#permit 10.1.0.0/16
Dell(config-std-nacl)#show config
!
ip access-list standard kigali
seq 5 permit 10.1.0.0/16
Dell(config-std-nacl)#
Access Control Lists (ACLs)
137
Summary of Contents for S4820T
Page 1: ...Dell Configuration Guide for the S4820T System 9 8 0 0 ...
Page 282: ...Dell 282 Control Plane Policing CoPP ...
Page 622: ...Figure 81 Configuring Interfaces for MSDP 622 Multicast Source Discovery Protocol MSDP ...
Page 623: ...Figure 82 Configuring OSPF and BGP for MSDP Multicast Source Discovery Protocol MSDP 623 ...
Page 629: ...Figure 86 MSDP Default Peer Scenario 2 Multicast Source Discovery Protocol MSDP 629 ...
Page 630: ...Figure 87 MSDP Default Peer Scenario 3 630 Multicast Source Discovery Protocol MSDP ...
Page 751: ...10 11 5 2 00 00 05 00 02 04 Member Ports Te 1 2 1 PIM Source Specific Mode PIM SSM 751 ...
Page 905: ...Figure 112 Single and Double Tag First byte TPID Match Service Provider Bridging 905 ...
Page 979: ...6 Member not present 7 Member not present Stacking 979 ...
Page 981: ...storm control Storm Control 981 ...
Page 1103: ...Figure 134 Setup OSPF and Static Routes Virtual Routing and Forwarding VRF 1103 ...