Chapter 25: Access Control Lists
IPv4 ACLs
– 897 –
in
– Indicates that this list applies to ingress packets.
time-range-name
- Name of the time range. (Range: 1-16
characters)
counter
– Enables counter for ACL statistics.
D
EFAULT
S
ETTING
None
C
OMMAND
M
ODE
Global Configuration
C
OMMAND
U
SAGE
If an ACL is already bound to a port and you bind a different ACL to it, the
switch will replace the old binding with the new one.
E
XAMPLE
Console(config)#ipv6 access-group david in
Console(config)#
R
ELATED
C
OMMANDS
permit
,
deny
(Standard IP ACL)
This command adds a rule to a Standard IPv4 ACL. The rule sets a filter
condition for packets emanating from the specified source. Use the
no
form to remove a rule.
S
YNTAX
{
permit
|
deny
}
{
any
|
source bitmask | host
source
}
[
time-range
time-range-name
]
no
{
permit
|
deny
}
{
any
|
source bitmask | host
source
}
any
– Any source IP address.
source
– Source IP address.
bitmask
– Dotted decimal number representing the address bits to
match.
host
– Keyword followed by a specific IP address.
time-range-name
- Name of the time range.
(Range: 1-16 characters)
D
EFAULT
S
ETTING
None
C
OMMAND
M
ODE
Standard IPv4 ACL
Summary of Contents for SSE-G2252
Page 42: ...44 General IP Routing on page 627...
Page 603: ...Chapter 16 IP Configuration Setting the Switch s IP Address IP Version 6 609...
Page 883: ...Chapter 24 General Security Measures Port based Traffic Segmentation 894...
Page 989: ...Chapter 30 Congestion Control Commands Automatic Traffic Control Commands 1000 Console...
Page 1007: ...Chapter 33 Address Table Commands 1019...
Page 1137: ...Chapter 38 Quality of Service Commands 1150...