Reference Guide

Table Of Contents
sequence numbers of ACL rules in the ACL and change the order in which entries are applied. This
command is not saved in startup configuration and is not displayed in running configuration.
Note
If the generated sequence number exceeds the maximum sequence number, the ACL rule
creation fails and an informational message is displayed.
Default 10
Format ip access-list resequence {name| id } starting-sequence-
number increment
Mode Global Config
Parameter Description
starting-
sequence-number
The sequence number from which to start. The range is 1–2147483647. The default is 10.
increment
The amount to increment. The range is 1–2147483647. The default is 10.
{deny | permit} (IP ACL)
This command creates a new rule for the current IP access list. A rule may either deny or permit trac
according to the specified classification fields. At a minimum, either the every keyword or the protocol,
source address, and destination address values must be specified. The source and destination IP
address fields may be specified using the keyword any to indicate a match on any value in that field. The
remaining command parameters are all optional, but the most frequently used parameters appear in
the same relative order as shown in the command format.
Format
[sequence-number] {deny | permit} {every | {{eigrp | gre |
icmp | igmp | ip | ipinip | ospf | pim | tcp | udp | 0 -255}
{srcip srcmask | any | host srcip} [{range {portkey |
startport} {portkey | endport} | {eq | neq | lt | gt}
{portkey | 0-65535} ] {dstip dstmask | any | host dstip}
[{range {portkey | startport} {portkey | endport} | {eq | neq
| lt | gt} {portkey | 0-65535} ] [flag [+fin | -fin] [+syn |
-syn] [+rst | -rst] [+psh | -psh] [+ack | -ack] [+urg | -urg]
[established]] [icmp-type icmp-type [icmp-code icmp-code] |
icmp-message icmp-message] [igmp-type igmp-type] [fragments]
[precedence precedence | tos tos [ tosmask] | dscp dscp]|
[ttl eq 0-255]}} [time-range time-range-name] [log] [assign-
queue queue-id] [rate-limit rate burst-size]
Mode Ipv4-Access-List Config
Note
An implicit deny all IP rule always terminates the access list.
Quality of Service Commands
ExtremeSwitching 200 Series: Command Reference Guide for version 01 .02.04.0007 632