User`s guide

222 XgOS User’s Guide September 2014
3. Issue a commit after the ACL is defined:
This command collects all the multiple configuration steps of your policy and
stores them into the chassis’ database.
4. Specify the I/O card and apply the named ACL:
The same set can be attached to multiple cards (one at a time). Once attached, the
policy is downloaded and programmed into the card. The defined conditions and
actions will be applied to each packet passing through the card and its ACL rule
set.
5. Verify the ACL was assigned to the I/O card.
Look for the “a” field next to the “enables” In this example, QoS (q) is also
enabled:
6. Display the contents of the ACL policy:
commit
Are you sure you want to commit these changes (y/n)?y
set ethernet-card 3 acl -set=block16_5
show -list iocard 3
-----------------------------------------------------------------
slot 3
state up/up
descr
type nwEthernet1Port10GbCard
vnics 12
qos
acl block16_5
enables qa-
-----------------------------------------------------------------
1 record displayed
show -list acl
-----------------------------------------------------------------
name block16_5
rule 1
rank 0
descr
conditions dest ipaddr = 10.2.5.16 mask 255.255.255.255
action deny, forget egress