configure access-list
ExtremeWare XOS 11.5 supports only the Summit X450 family of switches and the BlackDiamond 8800 series switch.
ExtremeWare XOS 11.5 Command Reference Guide
831
configure access-list
configure access-list <aclname> [any | ports <portlist> | vlan <vlanname>]
{ingress | egress}
Description
Configures an access list to the specified interface.
Syntax Description
Default
The default direction is ingress.
Usage Guidelines
The access list applied in this command is contained in a text file created either externally to the switch
or using the
edit policy
command. The file is transferred to the switch using TFTP before it is applied
to the ports. The ACL name is the file name without its “.pol” extension. For example, the ACL
blocknetfour
would be in the file
blocknetfour.pol.
For more information on policy files, see the
ExtremeWare XOS Concepts Guide
.
Specifying the keyword
any
applies the ACL to all the ports, and is referred to as the wildcard ACL.
This ACL is evaluated for ports without a specific ACL applied to it, and is also applied to packets that
do not match the ACL applied to the interface.
Example
The following command configures the ACL
test
to port 1:2 at ingress:
configure access-list test ports 1:2
The following command configures the ACL
mydefault
as the wildcard ACL:
configure access-list mydefault any
The following command configures the ACL
border
as the wildcard egress ACL:
configure access-list border any egress
aclname
Specifies the ACL name. The name can be from 1-32 characters long.
any
Specifies that this ACL is applied to all interfaces as the lowest precedence
ACL.
portlist
Specifies the ports on which this ACL is applied.
vlanname
Specifies the VLAN on which this ACL is applied.
ingress
Apply the ACL to packets entering the switch on this interface.
egress
Apply the ACL to packets leaving the switch from this interface (BlackDiamond
10808 and BlackDiamond 12804 only).