Manual
GigaX3124 Layer3 Switch CLI Command Reference
109
Examples ASUS(cong)# access-list 100 permit icmp 1.1.1.1 0.0.0.0 host
1.1.1.4 2 code 3
13.19 access-list (<100-199>|<2000-2699>)
(deny|permit) (ip|tcp|udp|icmp)
host IPADDR IPADDR MASK [IFNAME]
Syntax access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) host IPADDR IPADDR MASK [IFNAME]
Parameters access-list Add an access list entry
<100-199> Extended IP access-list number
<2000-2699> Extended IP access-list number (expanded
range)
permit Specify packets to forward
deny Specify packets to reject.
ip Any Internet Protocol
tcp Transmission Control Protocol
udp User Datagram Protocol
icmp Internet Control Message Protocol
host A single Source host
IPADDR Source address
IPADDR destination address
MASK destination wildcard bits
[IFNAME] Egress interface name
Command Mode Global conguration mode
No/clear no access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) host IPADDR IPADDR MASK [IFNAME]
Show show access-lists [ACLNAME]
Default
Description This command species one or more conditions denied or
permitted to decide if the packet is forwarded or dropped.
Examples ASUS(cong)# access-list 100 permit icmp host 1.1.1.1 1.1.1.4
0.0.0.0