ACL Commands
OL-32830-01 Command Line Interface Reference Guide
112
4
4.2
permit ( IP )
Use the permit IP Access-list Configuration mode command to set permit
conditions for an IPv4 access list (ACL). Permit conditions are also known as
access control entries (ACEs). Use the no form of the command to remove the
access control entry.
Syntax
permit
protocol {any | source source-wildcard} {any | destination
destination-wildcard} [
ace-priority
priority] [dscp number | precedence number]
[
time-range
time-range-name]
[log-input]
permit
icmp {any | source source-wildcard} {any | destination destination-wildcard}
[any | icmp-type] [any | icmp-code]] [
ace-priority
priority] [dscp number |
precedence number] [
time-range
time-range-name]
[log-input]
permit
igmp {any | source source-wildcard} {any | destination
destination-wildcard}[igmp-type] [
ace-priority
priority] [dscp number |
precedence number] [
time-range
time-range-name]
[log-input]
permit tcp
{any | source source-wildcard} {any|source-port/port-range}{any |
destination destination-wildcard} {any|destination-port/port-range} [
ace-priority
priority] [dscp number | precedence number] [match-all list-of-flags] [
time-range
time-range-name]
[log-input]
permit udp
{any | source source-wildcard} {any|source-port/port-range} {any |
destination destination-wildcard} {any|destination-port/port-range} [
ace-priority
priority] [dscp number | precedence number] [
time-range
time-range-name]
[log-input]
no permit
protocol {any | source source-wildcard} {any | destination
destination-wildcard} [dscp number | precedence number][
time-range
time-range-name]
[log-input]
no permit
icmp {any | source source-wildcard} {any | destination
destination-wildcard} [any | icmp-type] [any | icmp-code]] [dscp number |
precedence number][
time-range
time-range-name]
Содержание 300 Series
Страница 2: ......