Command Line Interface
6931553-KDU 137 365 Uen D 2006-06-16
Related Commands
permit, deny (section 7.8.2 on page 693)
ip access-group (section 7.8.8 on page 705)
show ip access-list (section 7.8.4 on page 697)
7.8.2 permit, deny (Standard ACL)
This command adds a rule to a Standard IP ACL. The rule sets a filter condition
for packets emanating from the specified source. Use the no form to remove a
rule.
Syntax
[no] {permit | deny} {any | <source> <bitmask> | host
<source>}
• any – Any source IP address.
• source – Source IP address.
• bitmask – Decimal number representing the address bits to
match.
• host – Keyword followed by a specific IP address.
Default Setting
None
Command Mode
Standard ACL
Command Usage
• New rules are appended to the end of the list.
• Address bitmasks are similar to a subnet mask, containing four integers
from 0 to 255, each separated by a period. The binary mask uses 1 bits
to indicate “match” and 0 bits to indicate “ignore.” The bitmask is bitwise
ANDed with the specified source IP address, and then compared with