hit counter script

Creating Standard And Extended Ipv4 Acls - Cisco Catalyst 3750-E Software Configuration Manual

Hide thumbs Also See for Catalyst 3750-E:
Table of Contents

Advertisement

Configuring IPv4 ACLs

Creating Standard and Extended IPv4 ACLs

This section describes IP ACLs. An ACL is a sequential collection of permit and deny conditions. One
by one, the switch tests packets against the conditions in an access list. The first match determines
whether the switch accepts or rejects the packet. Because the switch stops testing after the first match,
the order of the conditions is critical. If no conditions match, the switch denies the packet.
The software supports these types of ACLs or access lists for IPv4:
These sections describe access lists and how to create them:
Access List Numbers
The number you use to denote your ACL shows the type of access list that you are creating.
lists the access-list number and corresponding access list type and shows whether or not they are
supported in the switch. The switch supports IPv4 standard and extended access lists, numbers 1 to 199
and 1300 to 2699.
Table 35-1
Access List Number
1–99
100–199
200–299
300–399
400–499
500–599
600–699
700–799
800–899
900–999
1000–1099
1100–1199
Catalyst 3750-E and 3560-E Switch Software Configuration Guide
35-8
Standard IP access lists use source addresses for matching operations.
Extended IP access lists use source and destination addresses for matching operations and optional
protocol-type information for finer granularity of control.
Access List Numbers, page 35-8
ACL Logging, page 35-9
Creating a Numbered Standard ACL, page 35-10
Creating a Numbered Extended ACL, page 35-11
Resequencing ACEs in an ACL, page 35-15
Creating Named Standard and Extended ACLs, page 35-15
Using Time Ranges with ACLs, page 35-17
Including Comments in ACLs, page 35-19
Access List Numbers
Type
IP standard access list
IP extended access list
Protocol type-code access list
DECnet access list
XNS standard access list
XNS extended access list
AppleTalk access list
48-bit MAC address access list
IPX standard access list
IPX extended access list
IPX SAP access list
Extended 48-bit MAC address access list
Chapter 35
Configuring Network Security with ACLs
Supported
Yes
Yes
No
No
No
No
No
No
No
No
No
No
Table 35-1
OL-9775-08

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst3560-e

Table of Contents