Create An Access Control List Profile And Enter Configuration Mode; Add A Filter Rule To The Current Access Control List Profile - Patton electronics SmartNode Series Software Configuration Manual

Software for smartnode series
Hide thumbs Also See for SmartNode Series:
Table of Contents

Advertisement

SmartWare Software Configuration Guide
Before you begin to enter the commands that create and configure the IP access control list, be sure that you
are clear about what you want to achieve with the list. Consider whether it is better to deny specific accesses
and permit all others or to permit specific accesses and deny all others.
Note
Since a single access control list can have multiple filtering criteria state-
ments, editing those entries online can be uncomfortable. Therefore we rec-
ommend editing multifaceted access control list offline within a
configuration file and downloading the configuration file later via TFTP to
your SmartNode device.
Create an access control list profile and enter configuration mode
This procedure describes how to create an IP access control list and enter access control list configuration mode
Mode: Administrator execution
Step
Command
1
node (cfg)#profile acl name Creates the access control list profile name and enters the configura-
name is the name by which the access list will be known. Entering this command puts you into access control list
configuration mode where you can enter the individual statements that will make up the access control list.
Use the no form of this command to delete an access control list profile. You cannot delete an access control list
profile if it is currently linked to an interface. When you leave the access control list configuration mode, the
new settings immediately become active.
Example: Create an access control list profile
In the following example the access control list profile named WanRx is created and the shell of the access con-
trol list configuration mode is activated.
SN>enable
SN#configure
SN(cfg)#profile acl WanRx
SN(pf-acl)[WanRx]#
Add a filter rule to the current access control list profile
The commands permit or deny are used to define an IP filter rule. This procedure describes how to create an IP
access control list entry that permits access
Mode: Profile access control list
Step
1
node (pf-acl)[ name ]#permit ip { src src-wildcard | any |
host src } { dest dest-wildcard | any | host dest } [cos group ]
This procedure describes how to create an IP access control list entry that denies access
Access Control List configuration task list
tion mode for this list
Command
17 • Access control list configuration
Purpose
Purpose
Creates an IP access of control list
entry that permits access defined
according to the command
options
197

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the SmartNode Series and is the answer not in the manual?

Subscribe to Our Youtube Channel

This manual is also suitable for:

Smartware release 2.20

Table of Contents