mac

Commands for ACL
427
port; d-port(optional): means need to match TCP/UDP destination interface;
port3(optional): value of TCP/UDP destination interface No., Interface No. is an integer
from 0-65535; <dPortMin>, the down boundary of destination port; <dPortMax>, the up
boundary of destination port; [ack] [fin] [psh] [rst] [urg] [syn], (optional) only for TCP
protocol, multi-choices of tag positions are available, and when TCP data reports the
configuration of corresponding position, then initialization of TCP data report is enabled
to form a match when in connection; precedence (optional) packets can be filtered by
priority which is a number from 0-7; tos (optional) packets can be filtered by service
type which ia number from 0-15; icmp-type (optional) ICMP packets can be filtered by
packet type which is a number from 0-255; icmp-code (optional) ICMP packets can be
filtered by packet code which is a number from 0-255; igmp-type (optional) ICMP
packets can be filtered by IGMP packet name or packet type which is a number from
0-255; <time-range-name>, name of time range.
Command Mode: Name extended MAC-IP access-list configuration mode
Default: No access-list configured.
Examples: Deny the passage of UDP packets with any source MAC address and
destination MAC address, any source IP address and destination IP address, and source
port 100.
Switch(config)# mac-ip-access-list extended macIpExt
Switch(Config-MacIp-Ext-Nacl-macIpExt)# deny any-source-mac any-destination-mac
udp any-source s-port 100 any-destination
36.27 show access-lists
Command: show access-lists [<num>|<acl-name>]
Functions: Reveal ACL of configuration.
Parameters: <acl-name>, specific ACL name character string; <num>, specific ACL No.
Default: None.
Command Mode: Admin Mode
Usage Guide: When not assigning names of ACL, all ACL will be revealed, used x time
sindicates the times of ACL to be used.
Examples:
Switch#show access-lists
access-list 10(used 0 time(s))
access-list 10 deny any-source
access-list 100(used 1 time(s))
access-list 100 deny ip any any-destination