Asus GigaX3124 User Manual
Page 161
GigaX3124 Layer3 Switch CLI Command Reference
136
13.47 access-list (<100-199>|<2000-2699>)
(deny|permit) (tcp|udp) host IPADDR
[eq] [<0-65535>] any [IFNAME]
Syntax
access-list (<100-199>|<2000-2699>) (deny|permit) (tcp|udp)
host IPADDR [eq] [<0-65535>] any [IFNAME]
Parameters
access-list Add an access list entry
<100-199> Extended IP access-list number
<2000-2699> Extended IP access-list number (expanded
range)
permit Specify packets to forward
deny Specify packets to reject.
tcp Transmission Control Protocol
udp User Datagram Protocol
host A single Source host
IPADDR Source address
eq Match only packets on a given port numbe
<0-65535> Port number
any Any destination host
[IFNAME] Egress interface name
Command Mode Global configuration mode
No/clear
no access-list (<100-199>|<2000-2699>) (deny|permit) (tcp|udp)
host IPADDR [eq] [<0-65535>] any [IFNAME]
Show
show access-lists [ACLNAME]
Default
Pass
Description
This command specifies one or more conditions denied or
permitted to decide if the packet is forwarded or dropped.
Examples
ASUS(config)# access-list 100 permit tcp host 10.0.0.1 eq 21
any