Access policy commands, Access policy commands -11 – Allied Telesis AT-8550 User Manual

Page 219

Advertising
background image

AT-9108, AT-8518, AT-8525, and AT-8550 User’s Guide

12-11

Access Policy Commands

Table 12-1

shows the commands used to configure access policy.

Table 12-1 Access Policy Configuration Commands

Command

Description

create access-profile <access_profile>
type [vlan | ipaddress]

Creates an access profile. Once the access profile is
created, one or more addresses can be added to it,
and the profile can be used to control a specific
routing protocol

config access-profile <access_profile>
mode [permit | deny]

Configures the access profile to be one of the
following:

permit

— Allows the addresses that match

the access profile description.

deny

— Denies the addresses that match the

access profile description.

The default setting is

permit

.

config access-profile <access_profile> add
{vlan <name> | ipaddress <ipaddress>
<subnet_mask>

Adds an IP address or VLAN name to the access
profile. The entry must be of the same type as the
access profile (for example, IP address).

config access-profile <access_profile>
delete {vlan <name> | ipaddress
<ipaddress> <subnet_mask>

Deletes an IP address or VLAN name from the
access profile.

config rip vlan [<name> | all] trusted-
gateway [<access_profile> | none]

Configures RIP to use the access list to determine
which RIP neighbor to receive (or reject) the
routes.

config rip vlan [<name> | all] import-filter
[<access_profile> | none]

Configures RIP to ignore certain routes received
from its neighbor.

config rip vlan [<name> | all ] export-filter
[<access-profile> | none]

Configures RIP to suppress certain routes when
performing route advertisements.

config ospf area <area_id> external-filter
[<access_profile> | none]

Configures the router to use the access policy to
determine which external routes are allowed to be
exported into the area. This router must be an ABR.

config ospf area <area_id> interarea-filter
[<access_profile> | none]

Configures the router to use the access policy to
determine which inter-area routes are allowed to
be exported into the area. This router must be an
ABR.

config dvmrp vlan [<name> | all] export-
filter [<access_profile> | none]

Configures DVMRP to filter out certain routes
when performing the route advertisement.

Advertising
This manual is related to the following products: