Manual

GigaX3124 Layer3 Switch CLI Command Reference
118
13.28 access-list (<100-199>|<2000-2699>)
(deny|permit) (ip|tcp|udp|icmp) host IPADDR
any [IFNAME]
Syntax access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) host IPADDR any [IFNAME]
Parameters access-list Add an access list entry
<100-199> Extended IP access-list number
<2000-2699> Extended IP access-list number (expanded
range)
permit Specify packets to forward
deny Specify packets to reject.
ip Any Internet Protocol
tcp Transmission Control Protocol
udp User Datagram Protocol
icmp Internet Control Message Protocol
host A single Source host
IPADDR Source address
any Any destination host
[IFNAME] Egress interface name
Command Mode Global conguration mode
No/clear no access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) host IPADDR any [IFNAME]
Show show access-lists [ACLNAME]
Default
Description This command species one or more conditions denied or
permitted to decide if the packet is forwarded or dropped.
Examples ASUS(cong)# access-list 100 permit icmp host 1.1.1.1 any