Cisco Catalyst X4232 Installation And Configuration Note page 62

Layer 3 services module
Table of Contents

Advertisement

Configuring Access Control Lists
Creating IP ACLs
You can create numbered standard, extended, or named standard IP ACLs on the Catalyst 4000 Layer
3 Services module.
Creating Numbered Standard and Extended IP ACLs
You can create numbered standard and extended IP ACLs using source addresses, abbreviations, or by
using a number.
To create a numbered standard IP ACL using a source address and wild card, perform the following task,
in global configuration mode:
Task
Define a standard IP ACL using a source address
and wildcard.
To create a numbered standard IP ACL using abbreviations for all sources, perform the following task,
in global configuration mode:
Task
Define a standard IP ACL using an abbreviation
for the source and source mask of 0.0.0.0
255.255.255.255.
To create a numbered extended IP ACL using a number and defining access conditions, perform the
following task in global configuration mode:
Task
Define an extended IP ACL number and the
access conditions.
To create a numbered extended IP ACL using abbreviations for all sources, perform the following task
in global configuration mode:
Task
Define an extended IP ACL using an abbreviation
for a source and source wildcard of 0.0.0.0
255.255.255.255 and an abbreviation for a
destination and destination wildcard of 0.0.0.0
255.255.255.255.
Installation and Configuration Note for the Catalyst 4000 Layer 3 Services Module
62
Do not set up conditions that result in packets getting lost. This situation can happen when a device
or interface is configured to advertise services on a network that has ACLs that deny these packets.
Command
Router (config) # access-list access-list-number
{deny | permit} source [source-wildcard]
Command
Router (config) # access-list access-list-number
{deny | permit}
any
Command
Router (config) # access-list access-list-number
{deny | permit} protocol source source-wildcard
destination destination-wildcard [precedence
precedence] [tos tos]
Command
Router (config) # access-list access-list-number
{deny | permit} protocol any any
78-10164-03

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 4000Ws-x4232-l3

Table of Contents