beautypg.com

Chapter 44: access control list commands, Ipv4 acls, Table 44-1 – Accton Technology Direk Tronik ES4524D User Manual

Page 389: Access control list commands, Table 44-2, Ipv4 acl commands

background image

44-1

Chapter 44: Access Control List Commands

Access Control Lists (ACL) provide packet filtering for IPv4 frames (based on
address, protocol, Layer 4 protocol port number or TCP control code), IPv6 frames
(based on address, next header type, or flow label), or any frames (based on MAC
address or Ethernet type). To filter packets, first create an access list, add the
required rules, and then bind the list to a specific port. This section describes the
Access Control List commands.

IPv4 ACLs

The commands in this section configure ACLs based on IPv4 addresses, TCP/UDP
port number, protocol type, and TCP control code. To configure IPv4 ACLs, first
create an access list containing the required permit or deny rules, and then bind the
access list to one or more ports

Table 44-1 Access Control List Commands

Command Groups

Function

Page

IPv4 ACLs

Configures ACLs based on IPv4 addresses, TCP/UDP port number,

protocol type, and TCP control code

44-1

IPv6 ACLs

Configures ACLs based on IPv6 addresses, next header type, and flow

label

44-7

MAC ACLs

Configures ACLs based on hardware addresses, packet format, and

Ethernet type

44-12

ACL Information

Displays ACLs and associated rules; shows ACLs assigned to each port 44-16

Table 44-2 IPv4 ACL Commands

Command

Function

Mode

Page

access-list ip

Creates an IPv4 ACL and enters configuration mode for

standard or extended IPv4 ACLs

GC

44-2

permit, deny

Filters packets matching a specified source IPv4 address

IPv4-

STD-ACL

44-2

permit, deny

Filters packets meeting the specified criteria, including

source and destination IPv4 address, TCP/UDP port

number, protocol type, and TCP control code

IPv4-

EXT-ACL

44-3

show ip access-list

Displays the rules for configured IPv4 ACLs

PE

44-5

ip access-group

Adds a port to an IPv4 ACL

IC

44-6

show ip access-group

Shows port assignments for IPv4 ACLs

PE

44-6

This manual is related to the following products: