Manual
+7(495) 797-3311 www.qtech.ru 
Москва, Новозаводская ул., 18, стр. 1 
304 
source | {host-source <sIpAddr>}} [s-port {<sPort> | 
range <sPortMin> <sPortMax>}] {{<dIpAddr> <dMask>} | 
any-destination | {host-destination <dIpAddr>}} [d-port 
{<dPort> | range <dPortMin> <dPortMax>}] 
[ack+fin+psh+rst+urg+syn] [precedence <prec>] [tos 
<tos>][time-range<time-range-name>] 
based  TCP IP  access  rule;  the 
no  form  command  deletes  this 
name-based  extended  IP 
access rule. 
[no] {deny | permit} udp {{<sIpAddr> <sMask>} | any-
source | {host-source <sIpAddr>}} [s-port {<sPort> | 
range <sPortMin> <sPortMax>}] {{<dIpAddr> <dMask>} | 
any-destination | {host-destination <dIpAddr>}} [d-port 
{<dPort> | range <dPortMin> <dPortMax>}] [precedence 
<prec>] [tos <tos>][time-range<time-range-name>]  
Creates  an  extended  name-
based UDP IP access  rule; the 
no  form  command  deletes  this 
name-based  extended  IP 
access rule. 
[no] {deny | permit} {eigrp | gre | igrp | ipinip | ip | ospf | 
<protocol-num>} {{<sIpAddr> <sMask>} | any-source | 
{host-source <sIpAddr>}} {{<dIpAddr> <dMask>} | any-
destination | {host-destination <dIpAddr>}} [precedence 
<prec>] [tos <tos>][time-range<time-range-name>] 
Creates  an  extended  name-
based  IP  access  rule  for  other 
IP  protocols;  the  no  form 
command  deletes  this  name-
based extended IP access rule. 
3)  Exit extended IP ACL configuration mode 
Command 
Explanation 
Extended IP ACL Mode 
exit 
Exits  extended  name-based IP 
ACL configuration mode. 
(5) Configuring a numbered standard MAC access-list 
Command 
Explanation 
Global Mode 
access-list<num>{deny|permit}{any-source-mac|{host-
source-mac<host_smac>}|{<smac><smac-mask>}} 
no access-list <num> 
Creates  a  numbered  standard 
MAC  access-list,  if  the  access-
list already  exists,  then a  rule 
will  add  to  the  current  access-
list;  the  “no  access-list 
<num>“  command  deletes  a 
numbered  standard  MAC 
access-list. 
(6) Creates a numbered MAC extended access-list 










