Command Line Interface
4-176
4
Access Control List Commands
Access Control Lists (ACL) provide packet filtering for IP frames (based on address,
protocol, or Layer 4 protocol port number or TCP control code) or any frames (based
on MAC address or Ethernet type). To filter packets, first create an access list, add
the required rules and then bind the list to a specific port. This section describes the
Access Control List commands.
IP ACLs
The commands in this section configure ACLs based on IP addresses, TCP/UDP
port number, protocol type, and TCP control code. To configure IP ACLs, first create
an access list containing the required permit or deny rules, and then bind the access
list to one or more ports.
Table 4-47 Access Control Lists
Command Groups
Function
Page
IP ACLs
Configures ACLs based on IP addresses, TCP/UDP port number, and
protocol type
MAC ACLs
Configures ACLs based on hardware addresses, packet format, and
Ethernet type
ACL Information
Displays ACLs and associated rules; shows ACLs assigned to each port 4-187
Table 4-48 IP ACLs
Command
Function
Mode
Page
access-list ip
Creates an IP ACL and enters configuration mode for
standard or extended IP ACLs
GC
permit, deny
Filters packets matching a specified source IP address
STD-ACL
permit, deny
Filters packets meeting the specified criteria, including
source and destination IP address, TCP/UDP port number,
protocol type, and TCP control code
EXT-ACL
show ip access-list
Displays the rules for configured IP ACLs
PE
ip access-group
Adds a port to an IP ACL
IC
show ip access-group
Shows port assignments for IP ACLs
PE
Содержание iES4024GP
Страница 1: ...iES4028F 4028FP 4024GP ...
Страница 2: ...iES4028F iES4028FP iES4024GP E082008 ST R03 149100041800A 149100040200A 149100041700A 149100000020A ...
Страница 4: ...iv This page is intentionally left blank ...
Страница 10: ...x This page is intentionally left blank ...
Страница 28: ...Contents xxviii This page is intentionally left blank ...
Страница 32: ...Tables xxxii This page is intentionally left blank ...
Страница 46: ...Introduction 1 10 1 This page is intentionally left blank ...
Страница 336: ...Configuring the Switch 3 280 3 This page is intentionally left blank ...
Страница 688: ...Command Line Interface 4 352 4 This page is intentionally left blank ...
Страница 702: ...Glossary Glossary 8 This page is intentionally left blank ...
Страница 710: ...Index 8 Index This page is intentionally left blank ...
Страница 711: ...This page is intentionally left blank ...
Страница 712: ...iES4028F 4028FP 4024GP ...