Asus GigaX3124 User Manual
Page 125

GigaX3124 Layer3 Switch CLI Command Reference
100
13.10 access-list (<100-199>|<2000-2699>)
(deny|permit) (ip|tcp|udp|icmp) any IPADDR
MASK [IFNAME]
Syntax
access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) any IPADDR MASK [IFNAME]
Parameters
access-list Add an access list entry
<100-199> Extended IP access-list number
<2000-2699> Extended IP access-list number (expanded
range)
permit Specify packets to forward
deny Specify packets to reject.
ip Any Internet Protocol
tcp Transmission Control Protocol
udp User Datagram Protocol
icmp Internet Control Message Protocol
any Any Source host
IPADDR destination address
MASK destination wildcard bits
[IFNAME] Egress interface name
Command Mode Global configuration mode
No/clear
no access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) any IPADDR MASK [IFNAME]
Show
show access-lists [ACLNAME]
Default
Description
This command specifies one or more conditions denied or
permitted to decide if the packet is forwarded or dropped.
Examples
ASUS(config)# access-list 100 permit icmp any 1.1.1.1 0.0.0.0