![FoxGate S6424-S2C2 series Скачать руководство пользователя страница 122](http://html1.mh-extra.com/html/foxgate/s6424-s2c2-series/s6424-s2c2-series_configuration-manual_2325481122.webp)
ACL Configuring
122
sub-rules for an ACL (this rule can suit both ACL with name ID and number ID).
18.4.1 Configuration Procedure
Follow these steps to configure a extended ACL
Table 18-4 Configure extended ACL based on digital identification
Command
Operation
Remark
Enter global configuration
mode
configure terminal
-
Define sub-item match
rule
access-list num match-order { config | auto }
optional
by
default ,system
is config
Define extended ACL
access-list num { permit | deny } [ protocol ]
[ established ] { source-IPv4/v6 source-wildcard |
any | ipv6any } [ port [ portmask ] ] { dest- IPv4/v6
dest-wildcard | any | ipv6any } [ port [ portmask ] ]
{ [ precedence precedence ] [ tos tos ] | [ dscp
dscp ] } [ time-range name ]
required
Table 18-5 Configure extended ACL based on name identification
Command
Operation
Remark
Enter global configuration mode
configure terminal
-
Define subitem match rule
access-list extended name match-order
{ config | auto }
optional
by
default ,system
is config
Define extended ACL and
enter configuration mode
access-list extended name
required
Configure ACL rule
{ permit | deny } [ protocol ] [ established ]
{ source-IPv4/v6 source-wildcard | any |
ipv6any } [ port [ portmask ] ] { dest-IPv4/v6
dest-wildcard | any | ipv6any } [ port
[ portmask ] ] { [ precedence precedence ]
[ tos tos ] | [ dscp dscp ] } [ time-range name ]
required