10-54
IPv4 Access Control Lists (ACLs)
Configuring Standard ACLs
Example of Creating and Listing a Standard, Named ACL.
This exam-
ple illustrates how to create a standard, named ACL with several ACEs. This
example creates an ACL that:
1.
permits IPv4 traffic from a host with the address of 10.10.10.104
2.
creates another ACE that blocks all other IPv4 traffic from the same
subnet
3.
allows all other IPv4 traffic
Figure 10-14. Example of Commands Used To Create an Standard, Named ACL
[ log]
This option generates an ACL log message if:
• The action is deny.
• There is a match.
• ACL logging is enabled on the switch. (Refer to “Enable ACL
“Deny” Logging” on page 10-112.)
(Use the debug command to direct ACL logging output to the
current console session and/or to a Syslog server. Note that you
must also use the
logging <
ip-addr
>
command to specify the
addresses of Syslog servers to which you want log messages
sent. See also “Enable ACL “Deny” Logging” on page 10-112.)
HP Switch(config)# ip access-list standard Sample-List
HP Switch(config-std-nacl)# permit host 10.10.10.104
HP Switch(config-std-nacl)# deny 10.10.10.1/24 log
HP Switch(config-std-nacl)# permit any
HP Switch(config-std-nacl)# exit
HP Switch(config)# _
Creates the “Sample-List”
ACL and enters the “Named
ACL” context for this list.
Appends three ACEs to the
list in the order shown.
Exits from the nacl context.
Содержание E3800 Series
Страница 1: ...HP Switch Software E3800 switches Software version KA 15 03 September 2011 Access Security Guide ...
Страница 2: ......
Страница 3: ...HP Networking E3800 Switches Access Security Guide September 2011 KA 15 03 ...
Страница 30: ...xxviii ...
Страница 86: ...2 36 Configuring Username and Password Security Password Recovery ...
Страница 186: ...4 72 Web and MAC Authentication Client Status ...
Страница 290: ...6 74 RADIUS Authentication Authorization and Accounting Dynamic Removal of Authentication Limits ...
Страница 364: ...8 32 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Страница 510: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Страница 548: ...11 38 Configuring Advanced Threat Protection Using the Instrumentation Monitor ...
Страница 572: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Страница 659: ...14 11 Configuring and Monitoring Port Security Port Security Figure 14 5 Examples of Show Mac Address Outputs ...
Страница 730: ...20 Index ...
Страница 731: ......