User Manual

Chapter 4 - Operation and Administration Using the CLI NPU Configuration
4Motion 216 System Manual
you configure an ACL, you can attach the ACL to either the NPU or the AUs or
both NPU and AUs.
All ACLs are either in the ACTIVE or INACTIVE state. The ACTIVE state indicates
that the ACL is attached to one or more interfaces; the INACTIVE state indicates
that the ACL is not attached to any interface.
This section describes the commands for:
“Configuring an ACL in the Standard/Extended Mode” on page 216
“Deleting an ACL” on page 240
“Attaching/De-attaching ACLs to/from an Interface” on page 241
“Displaying ACL Configuration Information” on page 244
4.3.9.1 Configuring an ACL in the Standard/Extended Mode
You can configure an ACL in either of the following modes:
Standard mode: Use this mode if you want to create Permit or Deny rules for
traffic based on source and destination IP addresses. Extended mode: Use this
mode if you want to create Permit or Deny rules with based on source and
destination IP addresses, source and destination ports, protocol.
1 Enable the standard or extended ACL configuration mode (refer
Section 4.3.9.1.1).
2 After you enter the ACL configuration mode, you can:
» Configure ACLs in the standard mode (refer Section 4.3.9.1.2).
» Configure ACLs in the extended mode (refer Section 4.3.9.1.3).
3 Terminate the ACL configuration mode (refer Section 4.3.9.1.4).
IMPORTANT
By default, all ACLs are INACTIVE, and are ACTIVE only after you attach the ACL to an interface to
make ACTIVE.That is, all traffic destined to the NPU or AUs is denied until you configure ACLs for
permitting specific connections.
To configure an ACL: