Service Manual

Version Description
8.3.11.1 Introduced on the Z9000.
8.3.7.0 Introduced on the S4810.
8.1.1.0 Introduced on the E-Series ExaScale.
7.8.1.0 Increase the name string to accept up to 140 characters.
Prior to 7.8.1.0, names were up to 16 characters long.
7.6.1.0 Introduced on the S-Series.
7.5.1.0 Introduced on the C-Series.
6.2.1.1 Introduced on the E-Series.
ip access-group
Assign an IP access list (IP ACL) to an interface.
Syntax
ip access-group access-list-name {in | out} [implicit-permit]
[vlan vlan-id] [vrf vrf-name]
To delete an IP access-group configuration, use the no ip access-group
access-list-name {in | out} [implicit-permit] [vlan vlan-id]
[vrf vrf-name] command.
Parameters
access-list-name Enter the name of a configured access list, up to 140
characters.
in Enter the keyword in to apply the ACL to incoming traffic.
out Enter the keyword out to apply the ACL to outgoing traffic.
implicit-permit (OPTIONAL) Enter the keyword implicit-permit to
change the default action of the ACL from implicit-deny to
implicit-permit (that is, if the traffic does not match the
filters in the ACL, the traffic is permitted instead of dropped).
vlan vlan-id (OPTIONAL) Enter the keyword vlan then the ID numbers
of the VLANs. The range is from 1 to 4094 (you can use IDs
from 1 to 4094).
vrf vrf-name (OPTIONAL) Enter the keyword vrf then the ID numbers of
the VRFs. The range is from 1 to 63 (you can use IDs from 1
to 63).
NOTE: When you specify a single VRF, use the name of
the VRF instead of the VRF ID number. Use the VRF ID
numbers only when you specify a range of VRFs.
Defaults Not enabled.
Command Modes INTERFACE/VRF MODE
Access Control Lists (ACL)
225