{ permit | deny } { rule-string rule-mask offset }&<1-20> [ ingress interface
interface-num ] [ egress interface interface-num | cpu ] [ time-range
time-range-name ]
【Parameter】
permit:permit the packet which satisfied the condition passing.
deny:deny the packet which satisfied the condition passing.
time-range
time-range-name
:the name of time range whichh is optional
parameter, and it will be efective in this time period.
Instruction:
Followings are all kinds of attribution with packet. ACL is the rules determined by
the value of these parameter.
source-addr source-wildcard
| any:
source-addr source-wildcard
means source
IP address and source address wildcard which is in the form of dotted decimal
notation; any means all source address which is used to establish standard or
extended ACL.
fragments:means this rule is effective to the fragment packets, and non-fragment
5-56