10-54
IPv4 Access Control Lists (ACLs)
Configuring Standard ACLs
Example of Creating and Listing a Standard, Named ACL.
This exam-
ple illustrates how to create a standard, named ACL with several ACEs. This
example creates an ACL that:
1.
permits IPv4 traffic from a host with the address of 10.10.10.104
2.
creates another ACE that blocks all other IPv4 traffic from the same
subnet
3.
allows all other IPv4 traffic
Figure 10-14. Example of Commands Used To Create an Standard, Named ACL
[ log]
This option generates an ACL log message if:
• The action is deny.
• There is a match.
• ACL logging is enabled on the switch. (Refer to “Enable ACL
“Deny” Logging” on page 10-112.)
(Use the debug command to direct ACL logging output to the
current console session and/or to a Syslog server. Note that you
must also use the
logging <
ip-addr
>
command to specify the
addresses of Syslog servers to which you want log messages
sent. See also “Enable ACL “Deny” Logging” on page 10-112.)
HP Switch(config)# ip access-list standard Sample-List
HP Switch(config-std-nacl)# permit host 10.10.10.104
HP Switch(config-std-nacl)# deny 10.10.10.1/24 log
HP Switch(config-std-nacl)# permit any
HP Switch(config-std-nacl)# exit
HP Switch(config)#
Creates the “Sample-List”
ACL and enters the “Named
ACL” context for this list.
Appends three ACEs to the
list in the order shown.
Exits from the nacl context.
Содержание HP ProCurve Series 6600
Страница 2: ......
Страница 6: ...iv ...
Страница 26: ...xxiv ...
Страница 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Страница 204: ...4 72 Web and MAC Authentication Client Status ...
Страница 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Страница 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Страница 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Страница 756: ...16 8 Key Management System Configuring Key Chain Management ...
Страница 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Страница 777: ......