198 MES3000 Ethernet switch series
ipv6 access-list access-list
Creates a new advanced IPv6 ACL and enters its configuration
mode (if the list has not been created yet) or the configuration
mode of a previously created list.
no ipv6 access-list
access-list
mac access-list extended
access-list
Creates a new MAC ACL and enters its configuration mode (if
the list has not been created yet) or the configuration mode of
a previously created list.
no mac access-list
extended access-list
timename: (1...32)
characters
Enters the time-range configuration mode and defines time
periods for the access list.
- time_name—profile name for time-range settings.
Removes the set time-range configuration.
To be activated, an ACL should be bound to an interface. The interface using the list may represent
either an Ethernet interface or a group of ports.
Commands for Interface Configuration of Ethernet Interface, VLAN and a Group of Ports
Command line in the interface configuration mode for Ethernet interface and a group of ports
appears as follows:
console (config-if)#
Table 5.243 A command that assigns an ACL to an interface
service-acl input access_list
[access_list]
access list:(1...32)
characters
profile_id: (0..2)
The command specifies the list in the settings of a definite
physical interface and binds the list to the interface.
It is possible to bind mac access-list and ip
access-list.
Remove the list from the interface.
Privileged EXEC Mode Commands
Command line in the Privileged EXEC mode appears as follows:
console#
Table 5.244 ACL display commands
show access-lists
[access-list]
access list:(1...32)
characters
Displays ACLs created on a switch.
show access-lists
time-range-active
[access-list]
Displays currently active ACLs created on a switch.
show interfaces access-lists
[gigabitethernet gi_port |
tengigabitethernet te_port
| port-channel group|
vlan vlan_id]
gi_port: (1..8/0/1..24);
te_port: (1..8/0/1..4);
vlan_id: (1..4094);
group: (1..24)
Displays ACLs assigned to interfaces.
clear access-lists counters
[gigabitethernet gi_port |
tengigabitethernet te_port
| port-channel group]
gi_port: (1..8/0/1..24);
te_port: (1..8/0/1..4);
group: (1..24)
Resets all ACL counters or ACL counters for the specified
interface.
show interfaces access-lists
counters
[gigabitethernet gi_port |
tengigabitethernet te_port
| port-channel group]
gi_port: (1..8/0/1..24);
te_port: (1..8/0/1..4);
group: (1..24)