Product guide

Access Control Lists (ACLs) for the Series 5300xl Switches
Configuring and Assigning an ACL
CIDR Notation. For information on using CIDR notation to specify ACL
masks, refer to “Using CIDR Notation To Enter the ACL Mask” on page 9-32.
Caution Regarding
the Use of Source
Routing
Configuring and Assigning an ACL
ACL Feature Page
Configuring and Assigning a Numbered, Standard ACL 9-33
Configuring and Assigning a Numbered, Extended ACL 9-38
Configuring a Named ACL 9-44
Enabling or Disabling ACL Filtering 9-46
Overview
General Steps for Implementing ACLs
1. Configure at least one ACL. This creates and stores the ACL(s) in the
switch configuration.
2. Assign an ACL. This applies the ACL to either the inbound or outbound
traffic on a designated VLAN.
3. Enable IP routing. Except for instances where the switch is the destina-
tion, assigned ACLs screen IP traffic only when routing is enabled on the
switch.
Source routing is enabled by default on the switch and can be used to override
ACLs. For this reason, if you are using ACLs to enhance network security, the
recommended action is to disable source routing on the switch. To do so,
execute no ip source-route.
9-25