RackSwitch G8000 Application Guide

IP Standard ACLs

The switch supports up to 127 IP ACLs (standard and extended). IP Standard ACLs are num- bered from 1-1000. Use IP Standard ACLs to filter traffic using source IP address/network mask and destination IP address/network/mask.

To create an IP Standard ACL:

RS G8000 (config)# access-list ip standard 1

RS G8000 (config-std-nacl)#

To delete an IP Standard ACL:

RS G8000 (config)# no access-list ip standard 1

RS G8000 (config)#

IP Extended ACLs

The switch supports up to 127 IP ACLs (standard and extended). IP Extended ACLs are num- bered from 1001-65535. Use IP Extended ACLs to filter traffic using the following criteria:

„Source IP address/network mask

„Destination IP address/network mask

„IP protocol number or name as shown in Table 6-1

„TCP/UDP application ports, as shown in Table 6-2 on page 97

„TCP flags

„ICMP message code and type

„Type of Service (TOS) value

„DSCP value

96 „ Chapter 6: Quality of Service

BMD00041, November 2008

Page 96
Image 96
Blade ICE G8000 manual IP Standard ACLs, IP Extended ACLs