Brocade Network OS Command Reference v4.1.0 User Manual

Page 379

Advertising
background image

Network OS Command Reference

341

53-1003115-01

ip access-list

2

To create rules on a standard ACL:

switch(config)# ip access-list standard stdACL3

switch(config-ip-std)# seq 5 permit host 10.20.33.4

switch(config-ip-std)# seq 15 deny any

switch(config-ip-std)# exit

switch(config)# ip access-list standard stdACL3

switch(config-ip-std)# no seq 5

switch(config-ip-std)# exit

switch(config)# ipv6 access-list standard stdV6ACL1

switch(config-ipv6-std)# seq 10 permit 2001:db8:85a3:0:0:8a2e:370:7334

switch(config-ipv6-std)# seq 11 deny any

switch(config-ipv6-std)# exit

To create rules on an extended ACL:

switch(config)# ip access-list extended extdACL5

switch(config-ip-ext)# seq 5 deny tcp host 10.24.26.145 any eq 23

switch(config-ip-ext)# seq 7 deny tcp any any eq 80

switch(config-ip-ext)# seq 10 deny udp any any range 10 25

switch(config-ip-ext)# seq 15 permit tcp any any

switch(config-ip-ext)# exit

switch(config)# ip access-list extended extdACL5

switch(config-ip-ext)# no seq 7

switch(config-ip-ext)# no seq 5

switch(config-ip-ext)# exit

switch(config)# exit

switch#

See Also

interface management,seq (extended IP ACLs), seq (standard IP ACLs),
show running-config interface management, show running-config ip access-list

Advertising