
2-8
z
The source IPv4 ACL and the destination IPv4 ACL must be of the same type.
z
The destination ACL does not take the name of the source IPv4 ACL.
Displaying and Maintaining IPv4 ACLs
To do...
Use the command…
Remarks
Display information about one or all IPv4
ACLs
display
acl
{
acl-number
|
all
|
name
acl-name
}
Available in any
view
Display information about ACL uses of a
switch
display acl resource
Available in any
view
Display the configuration and state of a
specified or all time ranges
display
time-range
{
time-range-name
|
all
}
Available in any
view
Clear statistics about a specified or all
IPv4 ACLs that are referenced by upper
layer software
reset
acl
counter
{
acl-number
|
all
|
name
acl-name
}
Available in user
view
IPv4 ACL Configuration Example
Network Requirements
As shown in
, a company interconnects its departments through the switch.
Configure an ACL to deny access of all departments but the President’s office to the salary query server
during office hours (from 8:00 to 18:00) in working days.
Figure 2-1
Network diagram for IPv4 ACL configuration
GE1/0/4
GE1/0/1
GE1/0/2
GE1/0/3
192.168.4.1
Switch
R&D department
Marketing department
Salary query server
President`s office
192.168.2.0/24
192.168.3.0/24
192.168.1.0/24
Summary of Contents for S5120-EI Series
Page 139: ...ii...
Page 578: ...1 21 C...
Page 739: ...1 12 Enable ARP detection based on 802 1X security entries SwitchB arp detection mode dot1x...
Page 926: ...2 8...
Page 942: ...ii Single Device Upgrade 3 4 IRF System Upgrade 3 5...
Page 985: ...1 1...
Page 1018: ...1 6...