mask, defined … 10-7
mask, multiple IP addresses … 10-34
mask, one IP address … 10-33
mask, per-port, defined … 10-8
match, always … 10-41
match, criteria … 10-32
match, example … 10-33
match, ignored … 10-27
maximum allowed … 10-28
name string, maximum characters … 10-35,
10-43
number of entries … 10-10
offline creation … 10-67
operator, comparison … 10-50
outbound traffic, defined … 10-8
oversubscribing resources … 10-20
packet match, defining … 10-24
performance degraded … 10-11
permit, defined … 10-8
per-port application … 10-17
per-port mask … 10-8
per-port rule
See rules.
planning … 10-11, 10-16
policies … 10-16
policy application points … 10-4
prioritizing feature usage … 10-17
purpose … 10-3
recommended use … 10-3
replacing … 10-28
resource usage … 10-16, 10-17
resource usage, help display … 10-20
resource use, example … 10-23
resource use, troubleshooting … 10-21
resource, display current use … 10-20
routed traffic … 10-29
rule and mask usage … 10-17
rules, configuration … 10-28
rules, maximum available … 10-17
rules, operation … 10-28
SA, defined … 10-8
security use … 10-4, 10-26
security use, caution … 10-27
See also ACL-5300xl.
sequence, ACEs … 10-41
source routing, caution … 10-11, 10-35
standard ACL, resource use … 10-19
standard, defined … 10-9, 10-35
standard, example … 10-45
standard, resource use … 10-18
standard, structure … 10-37
standard, use … 10-9, 10-43
static VLAN requirement … 10-11, 10-28, 10-29
supernetting … 10-31
supersede implicit deny any … 10-39
switched packets … 10-14
syntax
See command syntax.
Syslog
See ACL-3400cl/6400cl, logging.
TCP or UDP port number, IANA … 10-51
terms … 10-6
traffic types filtered … 10-4, 10-11
types, defined … 10-35
using fewer masks … 10-22
VLAN assignment … 10-12
VLANs … 10-28
where applied to traffic … 10-12, 10-29
wildcard … 10-7, 10-32, 10-33
wildcard, defined … 10-9
ACL-3400cl/6400cl, standard numeric I.D.
range … 10-35
ACL-5300xl
ACE sequence … 9-32
See ACL-5300xl , sequence, ACEs.
ACE, defined … 9-5
ACE, duplicates … 9-32
ACE, limit … 9-18
ACE, order in list
See sequence, ACEs.
ACE,after match not used … 9-29
ACL ID, defined … 9-5
ACL log message
See ACL-5300xl, logging.
ACL, defined … 9-5
applied to open connection … 9-63
assign nonexistent i.d. … 9-31
assign to VLAN … 9-31
basic structure … 9-26
broadcasts, effect on … 9-63
CIDR, mask … 9-32, 9-34
command summary … 9-4
command syntax … 9-34
configuration planning … 9-10
configured but not used … 9-31
configured, not used … 9-31
2 – Index