Dell PowerConnect 5448 User's Guide - Page 262
IP Based ACLs, Configuring IP Based ACLs with CLI Commands
View all Dell PowerConnect 5448 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 262 highlights
Configuring IP Based ACLs with CLI Commands The following table summarizes the equivalent CLI commands for configuring IP Based ACLs. Table 7-5. IP Based ACL CLI Commands CLI Command Description ip access-list access-list-name no ip access-list access-list-name To define an IPv4 access list and to place the device in IPv4 access list configuration mode, use the ipv4 access-list command in global configuration mode. To remove the access list, use the no form of this command. permit {any| protocol} {any|{source source-wildcard}} To set conditions to allow a packet to pass {any|{destination destination-wildcard}} [dscp number | a named IP access list, use the permit ip-precedence number] [fragments] command in access list configuration permit-icmp {any|{source source-wildcard}} {any|{destination mode. destination-wildcard}} {any|icmp-type} {any|icmp-code} [dscp number | ip-precedence number] permit-igmp {any|{source source-wildcard}} {any|{destination destination-wildcard}} {any|igmp-type} [dscp number | ip-precedence number] permit-tcp {any|{ source source-wildcard}} {any|source-port} {any|{ destination destination-wildcard}} {any|destination-port} [dscp number | ip-precedence number] [flags list-of-flags] permit-udp {any|{ source source-wildcard}} {any| source-port} {any|{destination destination-wildcard}} {any|destination-port} [dscp number | ip-precedence number] deny [disable-port] {any| protocol} {any|{source source-wildcard}} {any|{destination destination-wildcard}} [dscp number | ipprecedence number] [fragments] deny-icmp [disable-port] {any|{source source-wildcard}} {any|{destination destination-wildcard}} {any|icmp-type} {any|icmpcode} [dscp number | ip-precedence number] To set conditions to allow a packet to pass a named IP access list, use the deny command in access list configuration mode. deny-igmp [disable-port] {any|{source source-wildcard}} {any|{destination destination-wildcard}} {any|igmp-type} [dscp number | ip-precedence number] deny-tcp [disable-port] {any|{ source source-wildcard}} {any|sourceport} {any|{ destination destination-wildcard}} {any|destination-port} [dscp number | ip-precedence number] [flags list-of-flags] deny-udp [disable-port] {any|{ source source-wildcard}} {any| sourceport} {any|{destination destination-wildcard}} {any|destination-port} [dscp number | ip-precedence number] 262 Configuring Device Information