C
L
OMMAND
INE
6. Explicit default rule (permit any any) in the ingress MAC ACL for
ingress ports.
7. If no explicit rule is matched, the implicit default is permit all.
Masks for Access Control Lists
You can specify optional masks that control the order in which ACL rules
are checked. The switch includes two system default masks that pass/filter
packets matching the permit/deny rules specified in an ingress ACL. You
can also configure up to seven user-defined masks for an ACL. A mask
must be bound exclusively to one of the basic ACL types (i.e., Ingress IP
ACL, Egress IP ACL, Ingress MAC ACL or Egress MAC ACL), but a
mask can be bound to up to four ACLs of the same type.
Command Groups
IP ACLs
MAC ACLs
ACL Information
IP ACLs
Command
access-list ip
permit, deny
4-116
I
NTERFACE
Table 4-26. Access Control List Commands
Function
Configure ACLs based on IP addresses, TCP/
UDP port number, protocol type, and TCP control
code
Configure ACLs based on hardware addresses,
packet format, and Ethernet type
Display ACLs and associated rules; shows ACLs
assigned to each port
Table 4-27. IP ACL Commands
Function
Creates an IP ACL and enters
configuration mode for standard or
extended IP ACLs
Filters packets matching a specified
source or destination IP address
Page
4-116
4-135
4-148
Mode
Page
GC
4-118
STD-ACL
4-119
Need help?
Do you have a question about the SMC8624/48T and is the answer not in the manual?