Configuring ACL Configuration Example for ACL
Configuration Guide
537
Switch(config)#access-list extended 1600 rule 6 deny sip 10.10.70.0 smask
255.255.255.0
6) Create Policy Market, and then apply ACL 1600 to it.
Switch(config)#access-list policy name Market
Switch(config)#access-list policy action Market 1600
Switch(config-action)#exit
7) Bind Policy Market to port 1/0/1.
Switch(config)#interface gigabitEthernet 1/0/1
Switch(config-if)#access-list bind Market
Switch(config-if)#end
Switch#copy running-config startup-config
Verify the Configurations
Verify the configurations:
Switch(config)#show access-list 1600
Extended IP access list 1600
rule 1 permit sip 10.10.70.0 smask 255.255.255.0 dip 10.10.80.0 dmask 255.255.255.0
rule 2 permit sip 10.10.70.0 smask 255.255.255.0 protocol 6 d-port 80
rule 3 permit sip 10.10.70.0 smask 255.255.255.0 protocol 6 d-port 443
rule 4 permit sip 10.10.70.0 smask 255.255.255.0 protocol 6 d-port 53
rule 5 permit sip 10.10.70.0 smask 255.255.255.0 protocol 17 d-port 53
rule 6 deny sip 10.10.70.0 smask 255.255.255.0
Switch(config)#show access-list bind
Index Policy Name Interface/VID Direction Type
----- ----------- ------------- -------- ----
1 Market Gi1/0/1 Ingress Port
Index Acl Id Interface/VID Direction Type
----- ----------- ------------- -------- ----