User Manual

Table Of Contents
Setting value Description
A.B.C.D E.F.G.H
Specifies an IPv4 address (A.B.C.D) with
wildcard bits (E.F.G.H)
A.B.C.D/M
Specifies an IPv4 address (A.B.C.D) with subnet
mask length (Mbit)
host A.B.C.D Specifies a single IPv4 address (A.B.C.D)
any Applies to all IPv4 addresses
src-port : <0-65535>
If protocol is specified as tcp or udp, this specifies the transmission source port number <0-65535>
that is the condition. This can also be omitted.
Method of specifying Description
eq X Specify port number (X)
range X Y Specify port numbers (X) through (Y)
dst-info : Specifies the destination IPv4 address information that is the condition
Setting value Description
A.B.C.D E.F.G.H
Specifies an IPv4 address (A.B.C.D) with
wildcard bits (E.F.G.H)
A.B.C.D/M
Specifies an IPv4 address (A.B.C.D) with subnet
mask length (Mbit)
host A.B.C.D Specifies a single IPv4 address (A.B.C.D)
any Applies to all IPv4 addresses
dst-port : <0-65535>
If protocol is specified as tcp or udp, this specifies the destination port number <0-65535> that is the
condition. This can also be omitted.
Method of specifying Description
eq X Specify port number (X)
range X Y Specify port numbers (X) through (Y)
[Initial value]
none
[Input mode]
global configuration mode
[Description]
Generates an IPv4 access list.
Multiple conditions (maximum 256) can be specified for the generated access list.
To apply the generated access list, use the access-group command of interface mode.
If the "no" syntax is used to specify "action" and following, the IPv4 access list that matches all conditions is deleted.
If the "no" syntax is used without specifying "action" and following, the IPv4 access list of the matching ID of access list is
deleted.
[Note]
An access list that is applied to LAN/SFP port and logical interface cannot be deleted using the "no" syntax. You must first
cancel the application, and then delete the access list.
For both src-port and dst-port, you can use "range" to specify a range; however for the entire system, only one IPv4 access list
that specifies a range in this way can be applied to the interface by using the access-group command.
Command Reference | Traffic control | 267