Ip access-group [in | out – ADTRAN 1000R Series User Manual
Page 747
![background image](/manuals/36101/747/background.png)
Command Reference Guide
ATM Sub-Interface Config Command Set
61200510L1-35E
Copyright © 2005 ADTRAN
747
ip access-group
Use the ip access-group command to create an access list to be used for packets transmitted on or received
from the specified interface. Use the no form of this command to disable this type of control.
Syntax Description
Specifies the assigned IP access list name.
in
Enables access control on packets received on the specified interface.
out
Enables access control on packets transmitted on the specified interface.
Default Values
By default, these commands are disabled.
Applicable Platforms
This command applies to the NetVanta 300, 1000R, 3000, and 4000 Series units.
Command History
Release 3.1
Command was introduced.
Release 8.1
ATM sub-interface was added.
Functional Notes
When this command is enabled, the IP destination address of each packet must be validated before being
passed through. If the packet is not acceptable per these settings, it is dropped.
Usage Examples
The following example sets up the router to only allow Telnet traffic into the ATM sub-interface:
(config)#ip access-list extended TelnetOnly
(config-ext-nacl)#permit tcp any any eq telnet
(config-ext-nacl)#interface atm 1.1
(config-atm 1.1)#ip access-group TelnetOnly in