C613-50170-01 Rev B
Command Reference for x510 Series
1534
AlliedWare Plus™ Operating System - Version 5.4.7-1.x
IP
V
4 S
OFTWARE
A
CCESS
C
ONTROL
L
IST
(ACL) C
OMMANDS
(
ACCESS
-
LIST
EXTENDED
IP
PROTOCOL
FILTER
)
Mode
IPv4 Extended ACL Configuration
Default
Any traffic controlled by a software ACL that does not explicitly match a filter is
denied.
Usage
An ACL can be configured with multiple ACL filters using sequence numbers. If the
sequence number is omitted, the next available multiple of 10 will be used as the
sequence number for the new filter. A new ACL filter can be inserted into the
middle of an existing list by specifying the appropriate sequence number.
NOTE
:
The access control list being configured is selected by running the
command, with
the required access control list number, or name - but with no further parameters
selected.
Software ACLs will
deny
access unless
explicitly permitted
by an ACL action.
Example 1
[creating a list]
Use the following commands to add a new access-list filter entry to the access-list
named
my-list
that will reject IP packets from source address
10.10.1.1/32
to destination address
192.68.1.1/32
:
awplus#
configure terminal
awplus(config)#
access-list extended my-list
awplus(config-ip-ext-acl)#
deny ip 10.10.1.1/32 192.168.1.1/32
60
Destination Options for IPv6 [RFC1883]
88
EIGRP (Enhanced Interior Gateway Routing Protocol)
89
OSPFIGP [RFC1583]
97
Ethernet-within-IP Encapsulation / RFC3378
98
Encapsulation Header / RFC1241
108
IP Payload Compression Protocol / RFC2393
112
Virtual Router Redundancy Protocol / RFC3768
134
RSVP-E2E-IGNORE / RFC3175
135
Mobility Header / RFC3775
136
UDPLite / RFC3828
137
MPLS-in-IP / RFC4023
138
MANET Protocols / RFC-ietf-manet-iana-07.txt
139-252
Unassigned / IANA
253
Use for experimentation and testing / RFC3692
254
Use for experimentation and testing / RFC3692
255
Reserved / IANA
Table 37-6: IP protocol number and description (cont.)
Protocol Number
Protocol Description [RFC]