ACCESS CONTROL LIST COMMANDS

Command Mode

Privileged Exec

Example

Console#show access-list ip mask-precedence IP ingress mask ACL:

mask host any

mask 255.255.255.0 any Console#

Related Commands

mask (IP ACL) (4-125)

ip access-group

This command binds a port to an IP ACL. Use the no form to remove the port.

Syntax

[no] ip access-group acl_name {in out}

acl_name – Name of the ACL. (Maximum length: 16 characters)

in – Indicates that this list applies to ingress packets.

out – Indicates that this list applies to egress packets.

Default Setting

None

Command Mode

Interface Configuration (Ethernet)

Command Usage

A port can only be bound to one ACL.

If a port is already bound to an ACL and you bind it to a different ACL, the switch will replace the old binding with the new one.

You must configure a mask for an ACL rule before you can bind it to a port.

4-129

Page 373
Image 373
SMC Networks SMC8624/48T manual Ip access-group, Mask IP ACL, Syntax No ip access-group aclname in out