Chapter24 ACL Editor
Rules Windows
24-4
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
The upper portion of the screen lists the access rules that have been configured on
this router. This list does not contain SDM default rules. To view SDM default
rules, click the SDM Default Rules branch of the Rules tree.
The lower portion of the window lists the rule entries associated with the selected
rule. A rule entry consists of criteria that incoming or outgoing traffic is compared
against, and the action to take on traffic matching the criteria. If traffic does not
match the criteria of any of the entries in this box, it is dropped.
First column
This column may contain icons that indicate the status of a rule.
Name/Number
The name or the number of the access rule.
The numbers 1 through 99 are used to identify standard access lists. The numbers
100 through 199 are used to identify extended access lists. Name s, which can
contain alphabetic characters, allow you to extend the range of standard access
lists beyond 99, and extended access lists beyond 199.
Used By
The name of the interface or VTY numbers to which this rule has been applied.
Type
The type of rule, either standard or extended.
Standard rules compare a packets source IP address against its IP address criteria
to determine a match. The rules IP address criteria can be a single IP address, or
portions of an IP address, defined by a wildcard mask.
Extended rules can examine a greater variety of packet fields to determine a
match. Extended rules can examine both the packets source and destinatio n IP
addresses, the protocol type, the source and destination ports, and other packet
fields.
If the rule is read only, the read-only icon will appear in this column.