Allied Telesis CentreCOM FS980M/9 Command Reference Manual page 766

Centrecom fs980m series fast ethernet managed access switches alliedware plus version 5.4.7-0.x
Hide thumbs Also See for CentreCOM FS980M/9:
Table of Contents

Advertisement

IP
4 H
A
C
V
ARDWARE
CCESS
ONTROL
-
(
ACCESS
LIST
NUMBERED HARDWARE
Table 24-2: IP and ICMP parameters in access-list (hardware IP numbered)
Mode
Global Configuration
Default
On an interface controlled by a hardware ACL, any traffic that does not explicitly
match a filter is permitted.
Usage
This command creates an ACL for use with hardware classification. Once you have
configured the ACL, use the
apply this ACL to a port or QoS class-map.
ACLs numbered in the range 3000-3699 match on packets that have the specified
source and destination IP addresses.
You can use ACLs to redirect packets, by sending them to the CPU. Use such ACLs
with caution. They could prevent control packets from reaching the correct
destination, such as EPSR healthcheck messages and VCStack messages.
Hardware ACLs will permit access unless explicitly denied by an ACL action.
613-50157-01 Rev C
L
(ACL) C
IST
OMMANDS
ACL
IP
)
FOR
PACKETS
Parameter
Description
<ip-addr>
<reverse-mask>
<dest-ip>
The destination addresses to match against. You can specify a
single host, a subnet, or all destination addresses. The following
are the valid formats for specifying the destination:
any
host <ip-addr>
<ip-addr>/<prefix>
<ip-addr>
<reverse-mask>
vlan <1-4094>
The VLAN to match against. The ACL will match against the
specified ID in the packet's VLAN tag.
Command Reference for FS980M Series
AlliedWare Plus™ Operating System - Version 5.4.7-0.x
Match any source IP address within
the specified subnet. Specify the
subnet by entering a reverse mask in
dotted decimal format. For example,
entering "192.168.1.1 0.0.0.255" is
the same as entering 192.168.1.1/24.
Match any destination IP address.
Match a single destination host with
the IP address given by <ip-addr> in
dotted decimal notation.
Match any destination IP address
within the specified subnet. Specify
the subnet by entering the IPv4
address, then a forward slash, then
the prefix length.
Match any destination IP address
within the specified subnet. Specify
the subnet by entering a reverse
mask in dotted decimal format. For
example, entering "192.168.1.1
0.0.0.255" is the same as entering
192.168.1.1/24.
access-group
or the
match access-group
command to
766

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents