Enterasys Networks 1G58x-09 User Manual

Page 775

Advertising
background image

Security Configuration Command Set

Configuring Access Lists

Matrix E1 Series (1G58x-09 and 1H582-xx) Configuration Guide

14-93

To insert or replace an ACL entry:

access-list access-list-number insert | replace entry

To move entries within an ACL:

access-list access-list-number move destination source1 [source2]

To apply ACL restrictions to IP, UDP, TCP or ICMP packets:

access-list access-list-number {deny | permit} protocol source [source-wildcard]
[operator [port]] destination [destination-wildcard] [operator [port]] [icmp-type
[icmp-code] [established]

Syntax Description

ROUTER: These commands can be executed when the device is in router mode only.
For details on how to enable router configuration modes, refer to

Section 3.3.3

.

NOTE: Valid access-list-numbers for extended ACLs are 100 to 199. For standard
ACLs, valid values are 1 to 99.

access-list-number Specifies an extended access list number. Valid values are

from 100 to 199.

insert | replace
entry

(Optional) Inserts this new entry before a specified entry in
an existing ACL, or replaces a specified entry with this new
entry.

move destination
source1 source2

(Optional) Moves a sequence of access list entries before
another entry. Destination is the number of the existing
entry before which this new entry will be moved. Source1 is
a single entry number or the first entry number in the range
to be moved. Source2 (optional) is the last entry number in
the range to be moved. If not specified, only the source1
entry will be moved.

deny | permit

Denies or permits access if specified conditions are met.

Advertising
This manual is related to the following products: