IPv4 Access-list rules create and delete
Adds new rules for the IPv4 access-list from the config-ipv4-acl
mode.
Syntax for L3 protocols {protocol-number | ip | icmp} | sequence <seq-number> {permit | deny} {protocol-number | ip | icmp} <source-ip-address> <destination-ip-address> [dscp <dscp-value>] |
Command mode | ACL IPv4 mode |
Parameters |
|
Syntax for L4 protocols {tcp | udp} | sequence <seq-number> {permit | deny} {tcp | udp} <source-ip-address> [src-eq <src-l4-port>| src-gt <src-start-l4-port> | src-lt <src-end-l4-port> | src-range <src-start-l4-port> <src-end-l4-port>] <destination-ip-address> [dst-eq <dst-l4-port>| dst-gt <dst-start-l4-port> | dst-lt <dst-end-l4-port> | dst-range <dst-start-l4-port> <dst-end-l4-port>] [ack | fin | psh | rst | syn | urg] [dscp <dscp-value>] |
Parameters |
|
Usage | Use the no sequence <sequence-number> command to remove the access-list rule corresponding to the given sequence number. |
Supported Releases | 1.0.0 or later |
Click command | config acl update {full | incremental} <filename>
|
Example
|