EasyManua.ls Logo

Enterasys SecureStack C2 - Ip Access-Group

Enterasys SecureStack C2
607 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
ip access-group
SecureStack C2 Configuration Guide 18-79
Defaults
Ifî ±insert,î ±replace,î ±orî ±moveî ±areî ±notî ±specified,î ±theî ±newî ±entryî ±willî ±beî ±appendedî ±toî ±theî ±accessî ±list.
Ifî ±source2î ±isî ±notî ±specifiedî ±withî ±move,î ±onlyî ±oneî ±entryî ±willî ±beî ±moved.
Ifî ±operatorî ±andî ±portî ±areî ±notî ±specified,î ±accessî ±parametersî ±willî ±beî ±appliedî ±toî ±allî ±TCPî ±orî ±UDPî ±ports.
Mode
Globalconfiguration:C2(su)‐>router(Config)#
Usage
Accesslistsareappliedtointerfacesbyusingtheipaccess‐groupcommandasdescribedin“ip
access‐group”onpage 18‐74.
Validaccess‐list‐numbersforextendedACLsare100to199.ForstandardACLs,validvaluesare1
toî ±99.
Example
Thisî ±exampleî ±showsî ±howî ±toî ±defineî ±accessî ±listî ±101î ±toî ±denyî ±ICMPî ±transmissionsî ±fromî ±anyî ±sourceî ±
andî ±forî ±anyî ±destination:
C2(su)->router(Config)#access-list 101 deny ICMP any any
ip access-group
Useî ±thisî ±commandî ±toî ±applyî ±accessî ±restrictionsî ±toî ±inboundî ±framesî ±onî ±anî ±interfaceî ±whenî ±operatingî ±
inî ±routerî ±mode.î ±Theî ±noî ±formî ±ofî ±thisî ±commandî ±removesî ±theî ±specifiedî ±accessî ±list.
Syntax
ip access-group access-list-number in
no ip access-group access-list-number in
Parameters
Defaults
None.
Mode
Interfaceconfiguration:C2(su)‐>router(Config‐if(Vlan<vlan_id>))#
moveî ±destinationî ±
source1î ±source2
(Optional)î ±Movesî ±aî ±sequenceî ±ofî ±accessî ±listî ±entriesî ±beforeî ±anotherî ±entry.î ±
Destinationî ±isî ±theî ±numberî ±ofî ±theî ±existingî ±entryî ±beforeî ±whichî ±thisî ±newî ±entryî ±
willî ±beî ±moved.î ±Source1î ±isî ±aî ±singleî ±entryî ±numberî ±orî ±theî ±firstî ±entryî ±numberî ±inî ±
theî ±rangeî ±
toî ±beî ±moved.î ±Source2î ±(optional)î ±isî ±theî ±lastî ±entryî ±numberî ±inî ±theî ±
rangeî ±toî ±beî ±moved.î ±Ifî ±source2î ±isî ±notî ±specified,î ±onlyî ±theî ±source1î ±entryî ±willî ±beî ±
moved.
access‐list‐number Specifiesthenumberoftheaccesslisttobeappliedtotheaccesslist.This
isî ±aî ±decimalî ±numberî ±fromî ±1î ±toî ±199.
in Filtersî ±inboundî ±frames.

Table of Contents