1-1
1
ACL Configuration Commands
ACL Configuration Commands
acl
Syntax
acl number acl-number
[
match-order
{
auto
|
config
} ]
undo acl
{
all | number acl-number
}
View
System view
Parameters
all
: Specifies to remove all access control lists (ACLs).
number acl-number
: Specifies the number of an existing ACL or an ACL to be defined. ACL number
identifies the type of an ACL as follows.
z
An ACL number in the range 2000 to 2999 identifies a basic ACL.
z
An ACL number in the range 3000 to 3999 identifies an advanced ACL. Note that 3998 and 3999
cannot be configured because they are reserved for cluster management.
z
An ACL number in the range 4000 to 4999 identifies a layer 2 ACL.
z
An ACL number in the range 5000 to 5999 identifies a user-defined ACL.
match-order
: Specifies the match order for ACL rules. Following two match orders exist.
z
auto
: Specifies to match ACL rules according to the depth-first rule.
z
config
: Specifies to match ACL rules in the order they are defined.
Note that the
match-order
keyword is not available to Layer 2 ACLs or user-defined ACLs. The match
order for layer 2 ACLs or user defined ACLs can only be
config
. For details about the two match orders,
refer to the relevant description in
ACL Operation
.
Description
Use the
acl
command to define an ACL and enter the corresponding ACL view.
Use the
undo acl
command to remove all the rules of the specified ACL or all the ACLs.
By default, ACL rules are matched in the order they are defined.
Only after the rules in an existing ACL are fully removed can you modify the match order of the ACL.
In ACL view, you can use the
rule
command to add rules to the ACL.
Related commands:
rule
.
Содержание 5500-EI PWR
Страница 43: ...2 6...
Страница 76: ...1 17...
Страница 228: ...ii stp transmit limit 1 44 vlan mapping modulo 1 45 vlan vpn tunnel 1 46...
Страница 477: ...5 24 Sysname vlan 2 Sysname vlan2 service type multicast...
Страница 503: ...2 3 System View return to User View with Ctrl Z Sysname dot1x url http 192 168 19 23...
Страница 519: ...iii...
Страница 597: ...2 2 security policy server 192 168 0 1 user name format without domain...
Страница 648: ...1 9 Examples Clear static ARP entries Sysname reset arp static...
Страница 663: ...4 3 Sysname resilient arp interface vlan interface 2...
Страница 767: ...1 28 From 12 00 Jan 1 2008 to 12 00 Jun 1 2008...
Страница 1111: ...ii xmodem get 3 18...
Страница 1314: ...A 44 Z...