Reference Guide

Table Of Contents
Table 14: ACL Command Parameters
Parameter Description
remark comment Use the remark keyword to add a comment (remark) to an IP standard
or IP extended ACL. The remarks make the ACL easier to understand
and scan. Each remark is limited to 100 characters. A remark can consist
of characters in the range A-Z, a-z, 0-9, and special characters: space,
hyphen, underscore. Remarks are displayed only in show running
configuration. One remark per rule can be added for IP standard or IP
extended ACL. User can remove only remarks that are not associated
with a rule. Remarks associated with a rule are removed when the rule is
removed
sequence-number
Specifies a sequence number for the ACL rule. Every rule receives a
sequence number. A sequence number is specified by the user or is
generated by the device.
If a sequence number is not specified for the rule, a sequence number
that is 10 greater than the last sequence number in the ACL is used and
this rule is located in the end of the list. If this is the first ACL rule in the
given ACL, a sequence number of 10 is assigned. If the calculated
sequence number exceeds the maximum sequence number value, the
ACL rule creation fails.
It is not allowed to create a rule that duplicates an already existing one
and a rule cannot be configured with a sequence number that is already
used for another rule.
For example, if user adds new ACL rule to ACL without specifying a
sequence number, it is placed at the bottom of the list. By changing the
sequence number, user can move the ACL rule to a dierent position in
the ACL.
1-99 or 100-199 Range 1 to 99 is the access list number for an IP standard ACL. Range
100 to 199 is the access list number for an IP extended ACL.
[rule 1-1023] Specifies the IP access list rule.
{deny | permit} Specifies whether the IP ACL rule permits or denies an action.
Note: Assign-queue, redirect, and mirror attributes are configurable for a
deny rule, but they have no operational eect.
every Match every packet.
{eigrp | gre | icmp | igmp | ip | ipinip |
ospf | pim | tcp | udp | 0 -255}
Specifies the protocol to filter for an extended IP ACL rule.
srcip srcmask|any|host scrip Specifies a source IP address and source netmask for match condition of
the IP ACL rule.
Specifying any specifies srcip as 0.0.0.0 and srcmask as
255.255.255.255.
Specifying host A.B.C.D specifies srcip as A.B.C.D and srcmask as
0.0.0.0.
Quality of Service Commands
ExtremeSwitching 200 Series: Command Reference Guide for version 01 .02.04.0007 628