
C
HAPTER
27
| Access Control Lists
ARP ACLs
– 668 –
An ACL can contain up to 64 rules.
E
XAMPLE
Console(config)#access-list arp factory
Console(config-arp-acl)#
R
ELATED
C
OMMANDS
permit
,
deny
(ARP
ACL)
This command adds a rule to an ARP ACL. The rule filters packets matching
a specified source or destination address in ARP messages. Use the
no
form to remove a rule.
S
YNTAX
[
no
] {
permit
|
deny
}
ip
{
any
|
host
source-ip
|
source-ip ip-address-bitmask
}
mac
{
any
|
host
source-ip
|
source-ip ip-address-bitmask
} [
log
]
This form indicates either request or response packets.
[
no
] {
permit
|
deny
}
request
ip
{
any
|
host
source-ip
|
source-ip ip-address-bitmask
}
mac
{
any
|
host
source-mac
|
source-mac mac-address-bitmask
}
[
log
]
[
no
] {
permit
|
deny
}
response
ip
{
any
|
host
source-ip
|
source-ip ip-address-bitmask
}
{
any
|
host
destination-ip | destination-ip ip-address-bitmask
}
mac
{
any
|
host
source-mac
|
source-mac mac-address-bitmask
}
[
any
|
host
destination-mac
|
destination-mac mac-address-
bitmask
] [
log
]
source-ip
– Source IP address.
destination-ip
– Destination IP address with bitmask.
ip-address-bitmask
19
– IPv4 number representing the address bits
to match.
source-mac
– Source MAC address.
destination-mac
– Destination MAC address range with bitmask.
mac-address-bitmask
– Bitmask for MAC address (in hexadecimal
format).
log
- Logs a packet when it matches the access control entry.
D
EFAULT
S
ETTING
None
19. For all bitmasks, binary “1” means care and “0” means ignore.
Summary of Contents for DG-FS4528P
Page 2: ......
Page 4: ......
Page 148: ...CHAPTER 5 Simple Network Management Protocol Configuring SNMPv3 Groups 148 ...
Page 389: ...CHAPTER 17 VoIP Traffic Configuration Configuring Telephony OUI 389 ...
Page 515: ...CHAPTER 22 System Management Commands UPnP 515 TTL 20 Console ...
Page 972: ......
Page 973: ...DG FS4528P ...