Security and authentication
11.4 IP access control list
SCALANCE XM-400/XR-500 Command Line Interface (CLI)
Configuration Manual, 06/2016, C79000-G8976-C252-11
839
The packet filtering according to the access control list (ACL) is canceled.
You enable the setting with the ip access-group command.
You display the configuration of the access control list with the
show access-lists command.
Commands in the ACL standard configuration mode
This section describes commands that you can call up in the ACL standard configuration
mode.
In the Global configuration mode, enter the
ip access-list standard <acl-num> command,
to change to the configuration mode for this ACL. If an ACL with the specified number does
not exist, an ACL with the corresponding number is created.
Note
You can display existing access control lists with the show access-lists
command.
● If you exit the ACL standard configuration mode with the exit command, you return to the
Global configuration mode.
● If you exit the ACL standard configuration mode with the
end command, you return to the
Privileged EXEC mode.
With this command, you configure an IP access control list. The IP ACL contains a
description of the IP addresses for which the incoming and outgoing frames will be
forwarded.
You have the following options:
● All incoming and/or outgoing frames are forwarded.
● Incoming and/or outgoing frames of a specific host are forwarded.
● Incoming and/or outgoing frames of hosts of a specific subnet are forwarded.
● Incoming and/or outgoing frames of a specific protocol are forwarded.