TP-Link TL-SG3210 TL-SG3210 V1 CLI Reference Guide - Page 146

acl edit rule std-acl

Page 146 highlights

acl-id -- The desired Standard-IP ACL for configuration. rule-id -- The rule ID. op -- The operation for the switch to process packets which match the rules. There are two options, discard and permit. Discard means discarding packets, and permit means forwarding packets. By default, the option is permit. source-ip -- The source IP address contained in the rule. source-ip-mask -- The source IP address mask. It is required if you typed the source IP address. destination-ip -- The destination IP address contained in the rule. destination-ip-mask -- The destination IP address mask. It is required if you typed the destination IP address. time-segment -- The time-range for the rule to take effect. By default, it is not limited. Command Mode Global Configuration Mode Example Create a Standard-IP ACL whose ID is 120, and add Rule 10 for it. In the rule, the source IP address is 192.168.0.100, the source IP address mask is 255.255.255.0, the time-range for the rule to take effect is tSeg1, and the packets match this rule will be forwarded by the switch: TP-LINK(config)# acl create 120 TP-LINK(config)# acl rule std-acl 120 10 op permit dip 192.168.0.100 dmask 255.255.255.0 tseg tSeg1 acl edit rule std-acl Description The acl edit rule std-acl command is used to edit Standard-IP ACL rule. Syntax acl edit rule std-acl {acl-id} {rule-id} [op {discard | permit}] [[sip source-ip] {smask source-ip-mask}] [[dip destination-ip] {dmask destination-ip-mask}] [tseg time-segment] [index idx] Parameter acl-id -- The desired Standard-IP ACL for configuration. rule-id -- The rule ID. 134

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199

134
acl-id
——
The desired Standard-IP ACL for configuration.
rule-id
——
The rule ID.
op
——
The operation for the switch to process packets which match the rules.
There are two options, discard and permit. Discard means discarding packets,
and permit means forwarding packets. By default, the option is permit.
source-ip
——
The source IP address contained in the rule.
source-ip-mask
——
The source IP address mask. It is required if you typed
the source IP address.
destination-ip
——
The destination IP address contained in the rule.
destination-ip-mask
——
The destination IP address mask. It is required if you
typed the destination IP address.
time-segment
——
The time-range for the rule to take effect. By default, it is
not limited.
Command Mode
Global Configuration Mode
Example
Create a Standard-IP ACL whose ID is 120, and add Rule 10 for it. In the rule,
the source IP address is 192.168.0.100, the source IP address mask is
255.255.255.0, the time-range for the rule to take effect is tSeg1, and the
packets match this rule will be forwarded by the switch:
TP-LINK(config)# acl create
120
TP-LINK(config)# acl rule std-acl
120 10
op
permit
dip
192.168.0.100
dmask
255.255.255.0
tseg
tSeg1
acl edit rule std-acl
Description
The
acl edit rule std-acl
command is used to edit Standard-IP ACL rule.
Syntax
acl edit rule std-acl
{
acl-id
} {
rule-id
} [
op
{discard | permit}] [[
sip
source-ip
]
{
smask
source-ip-mask
}] [[
dip
destination-ip
] {
dmask
destination-ip-mask
}]
[
tseg
time-segment
] [
index
idx
]
Parameter
acl-id
——
The desired Standard-IP ACL for configuration.
rule-id
——
The rule ID.