IPv4 Access Control Lists (ACLs)
Configuring and Assigning an IPv4 ACL
ip access-list extended <
identifier
>
[ [
seq-#
] remark <
remark-str
>]
< permit | deny > <
ipv4-protocol-type
> <
SA
> <
src-acl-mask
> <
DA > <dest-acl-mask
> [log]
< permit | deny > tcp
<
SA
> <
src-acl-mask
> [<
operator
> <
port-id
>]
<
DA
> <
desti-acl-mask
> [<
operator
> <
port-id
>] [log]
[ established ]
Note:
The optional
log
function is available
only for “deny” ACEs.
< permit | deny > udp
<
SA
> <
src-acl-mask
> [<
operator
> <
port-id
>]
<
DA
> <
dest-acl-mask
> [<
operator
> <
port-id
>] [log]
< permit | deny > icmp
<
SA
> <
src-acl-mask
> <
DA
> <
dest-acl-mask
> [
icmp-type
] [log]
< permit | deny > igmp
<
SA
> <
SA-mask
> <
DA
> <
dest-acl-mask
> [
igmp-type
] [log]
[ precedence <
priority
>]
[ tos <
tos-setting
>]
. . .
<
Implicit Deny
>
exit
Figure 9-8. Example of General Structure Options for an Extended ACL
9-38
Содержание PROCURVE 2910AL
Страница 1: ...Access Security Guide ProCurve Switches W 14 03 2910al www procurve com ...
Страница 2: ......
Страница 3: ...HP ProCurve 2910al Switch February 2009 W 14 03 Access Security Guide ...
Страница 84: ...Configuring Username and Password Security Front Panel Security 2 36 ...
Страница 156: ...TACACS Authentication Operating Notes 4 30 ...
Страница 288: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup 8 22 ...
Страница 416: ...Configuring Advanced Threat Protection Using the Instrumentation Monitor 10 28 ...
Страница 516: ...Configuring Port Based and User Based Access Control 802 1X Messages Related to 802 1X Operation 12 76 ...
Страница 527: ...Configuring and Monitoring Port Security Port Security Figure 13 4 Examples of Show Mac Address Outputs 13 11 ...
Страница 572: ...Using Authorized IP Managers Operating Notes 14 14 ...
Страница 592: ...12 Index ...
Страница 593: ......
Страница 594: ... Copyright 2009 Hewlett Packard Development Company L P February 2009 Manual Part Number 5992 5439 ...