D-Link DXS-3600-16S Manual page 38

Dxs-3600 series layer 2/3 managed 10gbe switch
Hide thumbs Also See for DXS-3600-16S:
Table of Contents

Advertisement

Example
DXS-3600-32S# show access-list sip1
Standard IP access list 1999 sip1
999 deny 2.2.2.2 0.0.255.255
DXS-3600-32S# show access-list 2001
Extended IP access list 2001 ext-ip-2001
10 permit tcp host 1.1.1.1 eq echo any gt 6524 ack fin psh rst syn urg precedence internet
tos 14
DXS-3600-32S# show access-list
Standard IP access list 1 std-ip-1
999 deny 2.2.2.2 0.0.255.255
Standard IP access list 11 std-ip-11
10 permit host 1.1.1.1
Standard IP access list 1999 sip1
999 deny 2.2.2.2 0.0.255.255
Extended IP access list 2000 ext-ip-2000
Extended IP access list 2001 ext-ip-2001
10 permit tcp host 1.1.1.1 eq echo any gt 6524 ack fin psh rst syn urg precedence internet
tos 14
Extended IP access list 2011 ext-ip-2011
10 deny ip 5.5.5.5 0.0.255.255 host 7.7.7.5 fragments precedence internet tos 5
Extended IP access list 2111 ext-ip-2111
10 deny ip 5.5.5.5 0.0.255.255 host 7.7.7.5 precedence critical tos 6
Extended IP access list 3111 ext-ip-3111alt
Extended IP access list 3994 ext-ip-3111
Extended IPv6 access list ipv6-11
10 deny tcp host 1:2::3 eq 655 host 2:3:4:: gt 555 ack fin psh
Extended IPv6 access list ipv6-1
10 deny ipv6 1:2::3/32 host 2:22::
Extended MAC access list 6000 ext-mac-6000
10 deny any any
Extended MAC access list 7999 mac1
10 permit any any
Extended EXPERT access list 8000 ext-expert-8000
10 deny any any host 1.1.1.22 host 00-11-22-33-44-55
Extended EXPERT access list 9999 exp1
10 deny ip host 1.1.1.1 host 00-01-02-03-04-05 any any
DXS-3600-32S#
3-14 ip access-group
This command is used to apply a specific IP ACL to an interface. Use the no command to cancels the application.
ip access-group {id | name} {in | out}
no ip access-group {id | name} {in | out}
Parameters
id
name
in
out
Default
Command Mode
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide
This example shows how to display ACLs.
Specifies the ID number of IP ACL used. This number must be between 1 and 3999.
Specifies the name of the IP ACL to be configured. The name can be up to 32
characters long.
Specifies to filter the incoming packets of the interface.
Specifies to filter the outgoing packets of the interface.
None.
Interface Configuration Mode.
30

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents