Download Print this page

Centrecom FS980M/9 Command Reference Manual page 784

Fs980m series fast ethernet managed access switches reference for alliedware plus version 5.4.6-2.x

Advertisement

IP
4 H
A
C
V
ARDWARE
CCESS
ONTROL
(
ACL: IP
NAMED HARDWARE
PACKET ENTRY
Mode
IPv4 Hardware ACL Configuration (accessed by running the command
hardware (named hardware
Default
On an interface controlled by a hardware ACL, any traffic that does not explicitly
match a filter is permitted.
Usage
To use this command, first run the command
hardware ACL)
awplus(config-ip-hw-acl)#.
Then use this command (and the other "named hardware ACL: entry" commands)
to add filter entries. You can add multiple filter entries to an ACL. You can insert a
new filter entry into the middle of an existing list by specifying the appropriate
sequence number. If you do not specify a sequence number, the switch puts the
entry at the end of the ACL and assigns it the next available multiple of 10 as its
sequence number.
613-50137-01 Rev A
L
(ACL) C
IST
OMMANDS
)
Parameter
Description
<source-mac>
dhcpsnooping
<dest-mac>
The destination MAC address to match against. You can specify a
single MAC address, a range (through a mask), or any:
any
<dest-mac>
vlan <1-4094>
The VLAN to match against. The ACL will match against the
specified ID in the packet's VLAN tag.
and enter the desired access-list name. This changes the prompt to
Command Reference for FS980M Series
AlliedWare Plus™ Operating System - Version 5.4.6-2.x
The source MAC address to match
against, followed by the mask.
Enter the address in the format
<HHHH.HHHH.HHHH>, where each
H is a hexadecimal number.
Enter the mask in the format
<HHHH.HHHH.HHHH>, where each
H is a hexadecimal number. For a
mask, each value is either 0 or F,
where FF = Ignore, and 00 = Match.
Match the source address learned
from the DHCP Snooping binding
database.
Match against any destination MAC
address.
The destination MAC address to
match against, followed by the
mask.
Enter the address in the format
<HHHH.HHHH.HHHH>, where each
H is a hexadecimal number.
Enter the mask in the format
<HHHH.HHHH.HHHH>, where each
H is a hexadecimal number. For a
mask, each value is either 0 or F,
where FF = Ignore, and 00 = Match.
ACL))
access-list hardware (named
access-list
784

Advertisement

loading