Ipv4 Access List Numbers; Acl Logging - Cisco ME 3400 Software Configuration Manual

Ethernet access switch
Hide thumbs Also See for ME 3400:
Table of Contents

Advertisement

Configuring IPv4 ACLs

IPv4 Access List Numbers

The number you use to denote your IPv4 ACL shows the type of access list that you are creating.
Table 31-1
are supported in the switch. The switch supports IPv4 standard and extended access lists, numbers 1
to 199 and 1300 to 2699.
Table 31-1
Access List Number
1–99
100–199
200–299
300–399
400–499
500–599
600–699
700–799
800–899
900–999
1000–1099
1100–1199
1200–1299
1300–1999
2000–2699
In addition to numbered standard and extended IPv4 ACLs, you can also create standard and extended
Note
named IPv4 ACLs by using the supported numbers. That is, the name of a standard IP ACL can be 1 to
99; the name of an extended IP ACL can be 100 to 199. The advantage of using named ACLs instead of
numbered lists is that you can delete individual entries from a named list.

ACL Logging

The switch software can provide logging messages about packets permitted or denied by a standard IP
access list. That is, any packet that matches the ACL causes an informational logging message about the
packet to be sent to the console. The level of messages logged to the console is controlled by the logging
console commands controlling the syslog messages.
Because routing is done in hardware and logging is done in software, if a large number of packets match
Note
a permit or deny ACE containing a log keyword, the software might not be able to match the hardware
processing rate, and not all packets will be logged.
Cisco ME 3400 Ethernet Access Switch Software Configuration Guide
31-8
lists the access-list number and corresponding access list type and shows whether or not they
Access List Numbers
Type
IP standard access list
IP extended access list
Protocol type-code access list
DECnet access list
XNS standard access list
XNS extended access list
AppleTalk access list
48-bit MAC address access list
IPX standard access list
IPX extended access list
IPX SAP access list
Extended 48-bit MAC address access list
IPX summary address access list
IP standard access list (expanded range)
IP extended access list (expanded range)
Chapter 31
Configuring Network Security with ACLs
Supported
Yes
Yes
No
No
No
No
No
No
No
No
No
No
No
Yes
Yes
OL-9639-07

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents