952
Command Reference for AT-IX5-28GPX High Availability, High Power Video Surveillance PoE Switch
C613-50057-01 REV A
AlliedWare Plus™ Operating System - Version 5.4.5-0.x
Q
O
S C
OMMANDS
MATCH
ACCESS
-
GROUP
match access-group
Overview
Use this command to define match criterion for a class-map.
Syntax
match access-group {<
hw-IP-ACL
>|<
hw-MAC-ACL
>|<
hw-named-ACL
>}
no match access-group
{<
hw-IP-ACL
>|<
hw-MAC-ACL
>|<
hw-named-ACL
>}
Mode
Class Map Configuration
Usage
First create an access-list that applies the appropriate permit/deny requirements.
Then use the
match access-group
command to apply this access-list for matching
to a class-map. Note that this command will apply the access-list matching only to
incoming
data packets.
Examples
To configure a class-map named
cmap1
with one match criterion:
access-list
3001
, which allows IP traffic from any source to any destination, use the
commands:
awplus#
configure terminal
awplus(config)#
access-list 3001 permit ip any any
awplus(config)#
class-map cmap1
awplus(config-cmap)#
match access-group 3001
To configure a class-map named
cmap2
with one match criterion:
access-list
3001
, which allows MAC traffic from any source to any destination, use the
commands:
awplus#
configure terminal
awplus(config)#
access-list 4001 permit any any
awplus(config)#
class-map cmap2
awplus(config-cmap)#
match access-group 4001
Parameter
Description
<
hw-IP-ACL
>
Specify a hardware IP ACL number in the range <3000-3699>.
<
hw-MAC-ACL
>
Specify a hardware MAC ACL number in the range <4000-4699>.
<
hw-named-ACL
>
Specify the hardware named ACL.