Configuration Guide
536
Configuring ACL
Configuration Example for ACL
Figure 3-11
Binding the Policy to Port 1/0/1
9) Click
Save Config
to save the settings.
3.5 Using the CLI
1) Create Extended-IP ACL 1600.
Switch#configure
Switch(config)#access-list create 1600
2) Configure rule 1 to permit packets with source IP 10.10.70.0 and destination IP
10.10.80.0.
Switch(config)#access-list extended 1600 rule 1 permit sip 10.10.70.0 smask
255.255.255.0 dip 10.10.80.0 dmask 255.255.255.0
3) Configure Rule 2 and Rule 3 to permit packets with source IP 10.10.70.0, and destination
port TCP 80 (http service port) or TCP 443 (HTTPS service port).
Switch(config)#access-list extended 1600 rule 2 permit sip 10.10.70.0 smask
255.255.255.0 protocol 6 d-port 80
Switch(config)#access-list extended 1600 rule 3 permit sip 10.10.70.0 smask
255.255.255.0 protocol 6 d-port 443
4) Configure Rule 4 and Rule 5 to permit packets with source IP 10.10.70.0, and destination
port TCP53 or UDP 53.
Switch(config)#access-list extended 1600 rule 4 permit sip 10.10.70.0 smask
255.255.255.0 protocol 6 d-port 53
Switch(config)#access-list extended 1600 rule 5 permit sip 10.10.70.0 smask
255.255.255.0 protocol 17 d-port 53
5) Configure Rule 6 to deny packets with source IP 10.10.70.0.
Содержание TL-SG2424
Страница 26: ...Part 1 Accessing the Switch CHAPTERS 1 Overview 2 Web Interface Access 3 Command Line Interface Access...
Страница 130: ...Part 4 Configuring LAG CHAPTERS 1 LAG 2 LAG Configuration 3 Configuration Example 4 Appendix Default Parameters...
Страница 147: ...Part 5 Monitoring Traffic CHAPTERS 1 Traffic Monitor 2 Appendix Default Parameters...
Страница 449: ...Part 15 Configuring ARP CHAPTERS 1 Overview 2 ARP Configurations...
Страница 508: ...Configuring Voice VLAN Configuration Guide 485...
Страница 768: ...Configuring SNMP RMON Appendix Default Parameters Configuration Guide 745 Parameter Default Setting Status Disable...