S
ETTING THE
ACL N
T
AME AND
YPE
Figure 193: Showing TCAM Utilization
Use the Security > ACL (Configure ACL - Add) page to create an ACL.
CLI R
EFERENCES
"access-list ip" on page 926
◆
"show ip access-list" on page 931
◆
"access-list ipv6" on page 932
◆
◆
"show ipv6 access-list" on page 937
P
ARAMETERS
These parameters are displayed:
ACL Name – Name of the ACL. (Maximum length: 32 characters)
◆
Type – The following filter modes are supported:
◆
IP Standard: IPv4 ACL mode filters packets based on the source
■
IPv4 address.
IP Extended: IPv4 ACL mode filters packets based on the source
■
or destination IPv4 address, as well as the protocol type and
protocol port number. If the "TCP" protocol is specified, then you
can also filter packets based on the TCP control code.
IPv6 Standard: IPv6 ACL mode filters packets based on the source
■
IPv6 address.
IPv6 Extended: IPv6 ACL mode filters packets based on the
■
source or destination IP address, as well as DSCP, and the next
header type.
MAC – MAC ACL mode filters packets based on the source or
■
destination MAC address and the Ethernet frame type (RFC 1060).
ARP – ARP ACL specifies static IP-to-MAC address bindings used for
■
ARP inspection (see
– 361 –
C
HAPTER
"ARP Inspection" on page
| Security Measures
13
Access Control Lists
378).