Chapter2ACLConguration
<source-mac>
SourceMACaddress
<source-mac-wildca
rd>
SourceMACaddresswildcardmask
egress
FilteraccordingtodestinationMACaddress
<dest-mac>DestinationMACaddress
<dest-mac-wildcard>DestinationMACaddresswildcardmask
any
Indicatesanyow
event<event-name>
Eventlistname,notmorethan31characters
time-range
<timerange-name>
Timerangename,notmorethan31
characters
Instructions�Whenthetime-rangeeldisnotcongured,thisrulewillbeef-
fectivepermanently.Therelevanttimerangecommandmust
beconguredbeforethetime-rangeeldisused.
�ACLruleeventlistisonlysupportedbyT160Gseriesswitches.
ExampleThisexampledescribeshowtoconguretheLayer2ACLrule.
ZXR10(config)#acllinknumber1
ZXR10(config-link-acl)#rule1permitanycos2dinvlan-id100
ingress0011.1234.00000000.0000.0000egressany
Related
Commands
showacl
time-range
event-list
rule(HybridACL)
PurposeUsethiscommandtodeneahybridACLrule.Deletetherulewith
thenoformofthiscommand.
CommandModesHybridACLconguration
Syntaxrule<rule-no>{permit|deny}{({<ip-number>|ip}{<s
ource><source-wildcard>|any}{<dest><dest-wildcard>|
any})|(tcp{<source><source-wildcard>|any}[rule
{<port>|tcpporttype}]{<dest><dest-wildcard>|any}[rule
{<port>|tcpporttype}][tcp-control<0-63>])|(udp
{<source><source-wildcard>|any}[rule{<port>|udpport
type}]{<dest><dest-wildcard>|any}[rule{<port>|udppo
rttype}])}[{[precedence<pre-value>][tos<tos-value>]}|
dscp<dscp-value>]{<ether-protocol>|any}[cos<cos-vl
aue>][incos<cos-vlaue>][dinvlan<vlan-id>][doutervlan
<vlan-id>][ingress{<source-mac><source-mac-wildcard>|
any}][egress{<dest-mac><dest-mac-wildcard>|any}][{time
-range<timerange-name>|event<event-name>}]
norule<rule-no>
CondentialandProprietaryInformationofZTECORPORATION29