Creating Standard And Extended Ip Acls; Access List Numbers - Cisco WS-C3750-48PS-S Software Configuration Manual

Network switch
Table of Contents

Advertisement

Chapter 31
Configuring Network Security with ACLs
These are the steps to use IP ACLs on the switch:
Create an ACL by specifying an access list number or name and the access conditions.
Step 1
Apply the ACL to interfaces or terminal lines. You can also apply standard and extended IP ACLs to
Step 2
VLAN maps.
This section includes the following information:

Creating Standard and Extended IP ACLs

This section describes IP ACLs. An ACL is a sequential collection of permit and deny conditions. One
by one, the switch tests packets against the conditions in an access list. The first match determines
whether the switch accepts or rejects the packet. Because the switch stops testing after the first match,
the order of the conditions is critical. If no conditions match, the switch denies the packet.
The software supports these types of ACLs or access lists for IP:
These sections describe access lists and how to create them:

Access List Numbers

The number you use to denote your ACL shows the type of access list that you are creating.
lists the access-list number and corresponding access list type and shows whether or not they are
supported in the switch. The switch supports IP standard and IP extended access lists, numbers 1 to 199
and 1300 to 2699.
78-16180-02
Inbound and outbound rate limiting (except with QoS ACLs)
Reflexive ACLs or dynamic ACLs (except for some specialized dynamic ACLs used by the switch
clustering feature)
ACL logging for port ACLs and VLAN maps
Creating Standard and Extended IP ACLs, page 31-7
Applying an IP ACL to a Terminal Line, page 31-19
Applying an IP ACL to an Interface, page 31-20
Hardware and Software Treatment of IP ACLs, page 31-22
IP ACL Configuration Examples, page 31-22
Standard IP access lists use source addresses for matching operations.
Extended IP access lists use source and destination addresses for matching operations and optional
protocol-type information for finer granularity of control.
Access List Numbers, page 31-7
Creating a Numbered Standard ACL, page 31-9
Creating a Numbered Extended ACL, page 31-11
Creating Named Standard and Extended ACLs, page 31-15
Using Time Ranges with ACLs, page 31-17
Including Comments in ACLs, page 31-19
Catalyst 3750 Switch Software Configuration Guide
Configuring IP ACLs
Table 31-1
31-7

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 3750

Table of Contents