C613-50631-01 Rev A Command Reference for IE340 Series 1960
AlliedWare Plus™ Operating System - Version 5.5.3-0.x
IPV4 HARDWARE ACCESS CONTROL LIST (ACL) COMMANDS
ACCESS
-LIST (NUMBERED HARDWARE ACL FOR TCP OR UDP)
Parameter Description
<3000-3699> An ID number for this hardware IP access-list.
<action> The action that the switch will take on matching packets. See the
table above for valid values.
tcp Match against TCP packets.
udp Match against UDP packets.
<source-ip> The source addresses to match against. You can specify a single
host, a subnet, or all source addresses. The following are the valid
formats for specifying the source:
any Match any source IP address.
host <ip-addr> Match a single source host with the
IP address given by <ip-addr> in
dotted decimal notation.
<ip-addr>/<prefix> Match any source IP address within
the specified subnet. Specify the
subnet by entering the IPv4 address,
then a forward slash, then the prefix
length.
<ip-addr>
<reverse-mask>
Match any source IP address within
the specified subnet. Specify the
subnet by entering a reverse mask in
dotted decimal format. For example,
entering “192.168.1.1 0.0.0.255” is
the same as entering 192.168.1.1/24.
<source-ports> Match source TCP or UDP port numbers. Port numbers are
specified as integers between 0 and 65535. You can specify one or
more port numbers as follows:
eq <0-65535> Match a single port number.
lt <0-65535> Match all port numbers that are less
than the specified port number.
gt <0-65535> Match all port numbers that are
greater than the specified port
number.
ne <0-65535> Match all port numbers except the
specified port number.
range <start-port>
<end-port>
Match a range of port numbers.
<dest-ip> The destination addresses to match against. You can specify a
single host, a subnet, or all destination addresses. The following
are the valid formats for specifying the destination:
any Match any destination IP address.
host <ip-addr> Match a single destination host with
the IP address given by <ip-addr> in
dotted decimal notation.