free hit counter

Standard Ip Acl Commands - Dell MXL 10GbE Reference Manual

Switch i/o module
Table of Contents

Advertisement

Usage
show ip
Information
accounting
access-lists
Field
"Extended IP..."
"seq 5..."
"order 4"
Example
Dell#show ip accounting access-list
!
Standard Ingress IP access list test on TenGigabitEthernet 0/88
Total cam count 2
seq 5 permit 1.1.1.0/24 count (0 packets)
seq 10 deny 2.1.1.0/24 count (0 packets)

Standard IP ACL Commands

When you create an ACL without any rule and then apply it to an interface, the ACL behavior reflects an
implicit permit.
The MXL 10/40GbE Switch IO Module platform supports both Ingress and Egress IP ACLs.
NOTE: Also refer to the
sections.
deny (for Standard IP ACLs)
To drop packets with a certain IP address, configure a filter.
Syntax
deny {source | any | host {ip-address}}[count [byte]] [dscp
value] [order] [fragments] [log [interval minutes] [threshold-
in-msgs [count]] [monitor]
To remove this filter, you have two choices:
Parameters
source
Access Control Lists (ACL)
Description
Displays the name of the IP ACL.
Displays the filter. If the keywords count or byte were
configured in the filter, the number of packets or bytes the
filter processes is displayed at the end of the line.
Displays the QoS order of priority for the ACL entry.
Commands Common to all ACL Types
Use the no seq sequence-number command if you know the filter's
sequence number.
Use the no deny {source [mask] | any | host ip-address}
command.
Enter the IP address of the network or host from which the
packets were sent.
and
Common IP ACL Commands
147

Advertisement

Table of Contents
loading