Configuring ACL
Configuration Example for ACL
Configuration Guide
537
Switch(config)#access-list extended 1600 rule 6 deny sip 10.10.70.0 smask
255.255.255.0
6) Create Policy Market, and then apply ACL 1600 to it.
Switch(config)#access-list policy name Market
Switch(config)#access-list policy action Market 1600
Switch(config-action)#exit
7) Bind Policy Market to port 1/0/1.
Switch(config)#interface gigabitEthernet 1/0/1
Switch(config-if)#access-list bind Market
Switch(config-if)#end
Switch#copy running-config startup-config
Verify the Configurations
Verify the configurations:
Switch(config)#show access-list 1600
Extended IP access list 1600
rule 1 permit sip 10.10.70.0 smask 255.255.255.0 dip 10.10.80.0 dmask 255.255.255.0
rule 2 permit sip 10.10.70.0 smask 255.255.255.0 protocol 6 d-port 80
rule 3 permit sip 10.10.70.0 smask 255.255.255.0 protocol 6 d-port 443
rule 4 permit sip 10.10.70.0 smask 255.255.255.0 protocol 6 d-port 53
rule 5 permit sip 10.10.70.0 smask 255.255.255.0 protocol 17 d-port 53
rule 6 deny sip 10.10.70.0 smask 255.255.255.0
Switch(config)#show access-list bind
Index
Policy
Name
Interface/VID
Direction
Type
----- -----------
-------------
--------
----
1
Market
Gi1/0/1 Ingress Port
Index
Acl
Id
Interface/VID
Direction
Type
-----
-----------
-------------
--------
----