beautypg.com

Mac access-list – Allied Telesis AT-S95 CLI User Manual

Page 30

background image

Page 18

Not approved by Document Control. For review only.

Allied Telesis

Command Line Interface User’s Guide

Default Configuration

No IPv4 Access List is defined.

Command Mode

IP Access-list Configuration mode

User Guidelines

Enter IP-Access List configuration mode by using the ip access-list Global Configuration mode command.

After an access control entry (ACE) is added to an access control list, an implied deny-any-any condition

exists at the end of the list. That is, if there are no matches, the packets are denied. However, before the first
ACE is added, the list permits all packets.

Example

The following example shows how to define a permit statement for an IP ACL.

mac access-list

The mac access-list Global Configuration mode command defines a Layer 2 Access List and places the device in
MAC-Access List Configuration mode. Use the no form of this command to remove the Access List.

Ipv6 protocol

ipv6

41

Routing Header for IPv6

ipv6-route

43

Fragment Header for IPv6

ipv6-frag

44

Inter-Domain Routing Protocol

idrp

45

Reservation Protocol

rsvp

46

General Routing Encapsulation

gre

47

Encapsulating Security Payload (50)

esp

50

Authentication Header

ah

51

ICMP for IPv6

ipv6-icmp

58

EIGRP routing protocol

eigrp

88

Open Shortest Path Protocol

ospf

89

Protocol Independent Multicast

pim

103

Layer Two Tunneling Protocol

l2tp

115

ISIS over IPv4

isis

124

(any IP protocol)

any

25504

Console(config)# ip-access-list ip-acl1
Console(config-ip-al)# deny rsvp 192.1.1.1 0.0.0.255 any

IP Protocol

Abbreviated Name

Protocol Number