26-1
Chapter 26: Access Control List Commands
Access Control Lists (ACL) provide packet filtering for IPv4 frames (based on
address, protocol, Layer 4 protocol port number or TCP control code), IPv6 frames
(based on address, next header type, or flow label), or any frames (based on MAC
address or Ethernet type). To filter packets, first create an access list, add the
required rules, and then bind the list to a specific port. This section describes the
Access Control List commands.
IPv4 ACLs
The commands in this section configure ACLs based on IPv4 addresses, TCP/UDP
port number, protocol type, and TCP control code. To configure IPv4 ACLs, first
create an access list containing the required permit or deny rules, and then bind the
access list to one or more ports
Table 26-1 Access Control List Commands
Command Groups
Function
Page
IPv4 ACLs
Configures ACLs based on IPv4 addresses, TCP/UDP port number,
protocol type, and TCP control code
26-1
IPv6 ACLs
Configures ACLs based on IPv6 addresses, next header type, and flow
label
26-7
MAC ACLs
Configures ACLs based on hardware addresses, packet format, and
Ethernet type
26-12
ACL Information
Displays ACLs and associated rules; shows ACLs assigned to each port 26-16
Table 26-2 IPv4 ACL Commands
Command
Function
Mode
Page
access-list ip
Creates an IPv4 ACL and enters configuration mode for
standard or extended IPv4 ACLs
GC
26-2
permit, deny
Filters packets matching a specified source IPv4 address
IPv4-
STD-ACL
26-2
permit, deny
Filters packets meeting the specified criteria, including
source and destination IPv4 address, TCP/UDP port
number, protocol type, and TCP control code
IPv4-
EXT-ACL
26-3
show ip access-list
Displays the rules for configured IPv4 ACLs
PE
26-5
ip access-group
Adds a port to an IPv4 ACL
IC
26-6
show ip access-group
Shows port assignments for IPv4 ACLs
PE
26-6
Содержание 8926EM
Страница 6: ...ii ...
Страница 34: ...Getting Started ...
Страница 44: ...Introduction 1 10 1 ...
Страница 62: ...Initial Configuration 2 18 2 ...
Страница 64: ...Switch Management ...
Страница 76: ...Configuring the Switch 3 12 3 ...
Страница 118: ...Basic Management Tasks 4 42 4 ...
Страница 164: ...User Authentication 6 28 6 ...
Страница 176: ...Access Control Lists 7 12 7 ...
Страница 284: ...Quality of Service 14 8 14 ...
Страница 294: ...Multicast Filtering 15 10 15 ...
Страница 300: ...Domain Name Service 16 6 16 ...
Страница 310: ...Dynamic Host Configuration Protocol 17 10 17 ...
Страница 320: ...Configuring Router Redundancy 18 10 18 ...
Страница 344: ...IP Routing 19 24 19 ...
Страница 356: ...Unicast Routing 20 12 20 Web Click Routing Protocol RIP Statistics Figure 20 5 RIP Statistics ...
Страница 386: ...Unicast Routing 20 42 20 ...
Страница 388: ...Command Line Interface ...
Страница 400: ...Overview of the Command Line Interface 21 12 21 ...
Страница 466: ...SNMP Commands 24 16 24 ...
Страница 520: ...Access Control List Commands 26 18 26 ...
Страница 546: ...Rate Limit Commands 30 2 30 ...
Страница 612: ...VLAN Commands 34 24 34 ...
Страница 626: ...Class of Service Commands 35 14 35 ...
Страница 670: ...DHCP Commands 39 16 39 ...
Страница 716: ...IP Interface Commands 41 36 41 ...
Страница 768: ...IP Routing Commands 42 52 42 ...
Страница 770: ...Appendices ...
Страница 791: ......
Страница 792: ...20 Mason Irvine CA 92618 Phn 949 679 8000 www smc com 150200062800A R02 149100000035A R01 SMC8926EM SMC8950EM ...