Asus GigaX3124 User Manual
Page 131

GigaX3124 Layer3 Switch CLI Command Reference
106
13.16 access-list (<100-199>|<2000-2699>)
(deny|permit) (ip|tcp|udp|icmp) IPADDR
MASK host IPADDR [IFNAME]
Syntax
access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) IPADDR MASK host IPADDR [IFNAME]
Parameters
access-list Add an access list entry
<100-199> Extended IP access-list number
<2000-2699> Extended IP access-list number (expanded
range)
permit Specify packets to forward
deny Specify packets to reject.
ip Any Internet Protocol
tcp Transmission Control Protocol
udp User Datagram Protocol
icmp Internet Control Message Protocol
IPADDR source address
MASK source wildcard bits
host A single destination host
IPADDR Destination address
[IFNAME] Egress interface name
Command Mode Global configuration mode
No/clear
no access-list (<100-199>|<2000-2699>) (deny|permit)
(ip|tcp|udp|icmp) IPADDR MASK host IPADDR [IFNAME]
Show
show access-lists [ACLNAME]
Default
Description
This command specifies one or more conditions denied or
permitted to decide if the packet is forwarded or dropped.
Examples
ASUS(config)# access-list 100 permit icmp 1.1.1.1 0.0.0.0 host
1.1.1.4