Users Guide

Version Description
8.3.19.0 Introduced on the S4820T.
8.3.11.1 Introduced on the Z9000.
8.3.7.0 Introduced on the S4810.
8.1.1.0 Introduced on the E-Series.
7.8.1.0 Increased the name string to accept up to 140 characters. Prior to 7.8.1.0, names were up
to 16 characters long.
7.6.1.0 Introduced on the S-Series.
7.5.1.0 Introduced on the C-Series.
6.2.1.1 Introduced on the E-Series.
Usage Information You can assign one ingress ACL and one egress ACL to an interface.
NOTE: This command supports Loopback interfaces EE3 and EF series route processor modules
(RPMs). This command does not support Loopback interfaces ED series RPMs and S-Series Loopback
interfaces.
NOTE: If you apply outbound(egress) IP acl on a switch port, the lter applies only for routed trac
egressing out of that port.
To associate an access-list to a non-default VRF, use the vrf attribute of this command. You can use this
command at the interface context (physical/LAG) to apply the access-list to a range of VRFs.
The VRF MODE is not available for the default and management VRFs.
Related Commands
ip access-list standardcongure a standard ACL.
ip access-list extendedcongure an extended ACL.
ip mirror-access-group
Assign an IP mirror access control to an interface.
Syntax
ip mirror-access-group access-list-name {in} [implicit-permit] [vlan vlan-id]
[optimized]
To remove an IP mirror-access-group conguration, use the no ip mirror-access-group access-list-
name {in | out} [implicit-permit] [vlan vlan-id] [optimized] command.
Parameters
access-list-name Enter the name of a congured access list, up to 140 characters.
in Enter the keyword in to apply the ACL to incoming trac.
implicit-permit (OPTIONAL) Enter the keyword implicit-permit to change the default action of the
ACL from implicit-deny to implicit-permit (that is, if the trac does not match the lters
in the ACL, the trac is permitted instead of dropped).
vlan vlan-id (OPTIONAL) Enter the keyword vlan then the ID numbers of the VLANs. The range is
from 1 to 4094 (you can use IDs from 1 to 4094).
184 Access Control Lists (ACL)