IPv4 Access Control Lists (ACLs)

Configuring Extended ACLs

[ precedence < 0 - 7 precedence-name>]

This option causes the ACE to match packets with the specified IP precedence value. Values can be entered as the following IP precedence numbers or alphanumeric names:

0

or

routine

1

priority

2

immediate

3

flash

4

flash-override

5

critical

6internet (for internetwork control)

7network (for network control)

Note: The precedence criteria described in this section are applied in addition to any other selection criteria config­ ured in the same ACE.

[ tos ]

This option can be used after the DA to cause the ACE to match packets with the specified Type-of-Service (ToS) set­ ting. ToS values can be entered as the following numeric settings or, in the case of 0, 2, 4, and 8, as alphanumeric

names:

 

 

0

or

normal

2

max-reliability

4

max-throughput

6

 

 

8minimize-delay

Note: The ToS criteria in this section are applied in addi­ tion to any other criteria configured in the same ACE.

[log]

Optional; generates an Event Log message if:

The action is deny. (This option is not configurable for Permit.)

There is a match.

ACL logging is enabled on the switch. (Refer to “Enabling ACL Logging on the Switch” on page 9-98)

9-70