Reference Guide

Table Of Contents
the new rules would be entered at the end of the access-list. Use the management access-class
command to choose the active access-list. The active management list cannot be updated or removed.
The name value can be up to 32 characters.
Format management access-list name
Mode Global Config
no management access-list
This command deletes the MACAL identified by name from the system.
Format no management access-list name
Mode Global Config
{deny | permit} (Management ACAL)
This command creates a new rule for the current management access list. A rule may either deny or
permit trac according to the specified classification fields. Rules with ethernet, vlan and port-channel
parameters will be valid only if an IP address is defined on the appropriate interface. Each rule should
have a unique priority.
Format {deny | permit} [ethernet interface-number | vlan vlan-id |
port-channel number] [service service] [priority priority-
value]
{deny | permit} ip-source ip-address [mask mask | prefix-
length] [ethernet interface-number | vlan vlan-id | port-
channel number] [service service] [priority priority-value]
Mode Management-ACAL Config
Parameter Description
ethernet Ethernet port number.
ip-source Source IP address
port-channel Port-channel number.
priority Priority for rule.
service Service type condition, which can be one of the following key words:
java
tftp
telnet
ssh
http
https
snmp
sntp
any
vlan VLAN number.
Quality of Service Commands
ExtremeSwitching 200 Series: Command Reference Guide for version 01 .02.04.0007 651