Specifications

ip access-group
285
ip access-group
Applies an IPv4 access list to an Ethernet interface or a VLAN interface, and enables the
IPv4 filtering functionality.
Syntax
To set information:
ip access-group <ACL ID> in
To delete information:
no ip access-group <ACL ID> in
Input mode
(config-if)
Parameters
<ACL ID>
Specifies the identifier of the IPv4 address filter or the IPv4 packet filter that is to be
set.
1. Default value when this parameter is omitted:
This parameter cannot be omitted.
2. Range of values:
Specify an access list name that is 3 to 31 characters. For details about the
characters that can be specified, see Specifiable values for parameters.
in
Specifies
Inbound.
in: Inbound (Specifies the receiving side)
1. Default value when this parameter is omitted:
This parameter cannot be omitted.
2. Range of values:
None
Default behavior
None
Impact on communication
When an access list with at least one entry is applied to an interface, IP packets received at
the interface are discarded temporarily until the entry is applied to the interface.
When the change is applied
The change is applied immediately after setting values are changed.
Notes
1. This command cannot be set if filter is not set when the system function
command has been set. (This command can be set if the
system function
command has not been set.) [AX1250S] [AX1240S]
2. One IPv4 filter can be set for one interface. A maximum of 128 filters can be applied
to an Ethernet interface or a VLAN interface. If a filter has already been set, first