Netgear M5300-52G3 Command Line Interface (CLI) User Manual - Page 495
IP Access Control List (ACL) Commands, ACL. Use
View all Netgear M5300-52G3 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 495 highlights
ProSafe Managed Switch show mac access-lists This command displays a MAC access list and all of the rules that are defined for the MAC ACL. Use the [name] parameter to identify a specific MAC ACL to display. Format Mode show mac access-lists [name] Privileged EXEC Term Definition Rule Number The ordered rule number identifier defined within the MAC ACL. Action The action associated with each rule. The possible values are Permit or Deny. Source MAC Address The source MAC address for this rule. Destination The destination MAC address for this rule. MAC Address Ethertype The Ethertype keyword or custom value for this rule. VLAN ID The VLAN identifier value or range for this rule. COS The COS (802.1p) value for this rule. Log Displays when you enable logging for the rule. Assign Queue The queue identifier to which packets matching this rule are assigned. Mirror Interface The unit/slot/port to which packets matching this rule are copied. Redirect Interface The unit/slot/port to which packets matching this rule are forwarded. Time Range name Displays the name of the time-range if the MAC ACL rule has referenced a time range. Rule Status Status (Active/Inactive) of the MAC ACL rule IP Access Control List (ACL) Commands This section describes the commands you use to configure IP ACL settings. IP ACLs ensure that only authorized users have access to specific resources and block any unwarranted attempts to reach network resources. The following rules apply to IP ACLs: • Managed switch software does not support IP ACL configuration for IP packet fragments. • The maximum number of ACLs you can create is hardware dependent. The limit applies to all ACLs, regardless of type. • The maximum number of rules per IP ACL is hardware dependent. • Wildcard masking for ACLs operates differently from a subnet mask. A wildcard mask is in essence the inverse of a subnet mask. With a subnet mask, the mask has ones (1's) in the bit positions that are used for the network address, and has zeros (0's) for the bit Quality of Service (QoS) Commands 495