D-Link DGS-3130 Emulator - Page 47
ip access-group
View all D-Link DGS-3130 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 47 highlights
DGS-3130 Layer 3 Stackable Managed Switch CLI Reference Guide Example This example shows how to create an extended expert ACL. Switch#configure terminal Switch(config)#expert access-list extended exp_acl Switch(config-exp-nacl)# 4-5 ip access-group This command is used to specify the IP access list to be applied to an interface. Use the no form of this command to remove an IP access list. ip access-group {NAME} [in | out] no ip access-group [NAME] [in | out] Parameters NAME in out Specifies the name of the IP access list to be applied. The maximum length is 32 characters. (Optional) Specifies that the IP access list will be applied to check packets in the ingress direction. If the direction is not specified, in is used. (Optional) Specifies that the IP access list will be applied to check packets in the egress direction. Default None. Command Mode Interface Configuration Mode. Command Default Level Level: 12. Usage Guideline If an IP access group is already configured on the interface, the command applied later will overwrite the previous setting. Only one access list of the same type can be applied to the same interface; but access lists of different types can be applied to the same interface. The association of an access group with an interface will consume the filtering entry resource in the Switch controller. If the resources are insufficient to commit the command, then an error message will be displayed. There is a limitation on the number of port operator resources. If applying the command exhausts the available port selectors, then an error message will be displayed. Example This example shows how to specify the IP access list "Strict-Control" as an IP access group for ethernet 1/0/2. 43