Access-Group - Allied Telesis x510-28GTX Command Reference Manual

Stackable gigabit edge switches x510 series
Table of Contents

Advertisement

IP
4 H
A
C
V
ARDWARE
CCESS
ONTROL
-
ACCESS
GROUP

access-group

Overview
This command adds or removes a hardware-based access-list to or from a switch
port interface. The number of hardware numbered and named access-lists that can
be added to a switch port interface is determined by the available memory in
hardware-based packet classification tables.
This command works in Interface Configuration mode to apply hardware
access-lists to selected switch port interfaces.
The no variant of this command removes the selected access-list from an interface.
access-group
Syntax
[<3000-3699>|<4000-4699>|<hardware-access-list-name>]
no access-group
[<3000-3699>|4000-4699|<hardware-access-list-name>]
Mode
Interface Configuration for a switch port interface
Default
Any traffic on an interface controlled by a hardware ACL that does not explicitly
match a filter is permitted.
Usage
First create an IP access-list that applies the appropriate permit/deny requirements
with the
access-list (numbered hardware ACL for MAC addresses)
access-list hardware (named hardware ACL)
apply this hardware access- list to a specific port or port range. Note that this
command will apply the access-list only to incoming data packets.
To apply ACLs to an LACP aggregated link, apply it to all the individual switch ports
in the aggregated group. To apply ACLs to a static channel group, apply it to the
static channel group itself. An ACL can even be applied to a static aggregated link
that spans more than one switch instance
Note that you cannot apply software numbered ACLs to switch port interfaces with
the access-group command. This command will only apply hardware ACLs.
NOTE
C613-50170-01 Rev B
L
(ACL) C
IST
OMMANDS
Parameter
<3000-3699>
<4000-4699>
<hardware-access-list-name>
access-list (numbered hardware ACL for IP packets)
: Hardware ACLs will permit access unless explicitly denied by an ACL action.
Command Reference for x510 Series
AlliedWare Plus™ Operating System - Version 5.4.7-1.x
Description
Hardware IP access-list.
Hardware MAC access-list.
The hardware access-list name.
command, the
command or the
command. Then use this command to
(Link Aggregation
Commands).
1467

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents