ACCESS-LIST 12 - 29
Parameters
permit Use with a permit command to allow IP packets
permit <source-MAC> <AA-BB-CC-DD-EE-FF>
<dest-MAC> <AA-BB-CC-DD-EE-FF> [dot1p
<0-7>|log|mark [8021p<0-7>|dscp<0-
63>[rule-precedence <1-5000>
[rule-description <WORD>]]|rule-precedence
<1-5000>[rule-description <WORD>|type
[8021q|<1-65535>|aarp|appletalk|
arp|ip|ipv6|ipx|mint|rarp|wisp] [log|
rule-precedence <1-5000> rule-desription
<WORD>]|vlan <1-4095> [log|
rule-precedence|type[8021q|
<1-65535>|aarp|appletalk
|arp|ip|ipv6|ipx|mint|rarp|wisp]
• permit – Sets the ACL action type
• <source-MAC> – Specify a source MAC address to
match
• <AA-BB-CC-DD-EE-FF> – Specify a source MAC address
mask
• <dest-MAC> – Defines the destination MAC address
• any – any destination host
• host – Defines the exact destination MAC address to
match
• <AA-BB-CC-DD-EE-FF> – Defines the source MAC
address mask
• dot1p <0-7> [log|rule-precedence|type] – 802.1p
priority
• <0-7> – Priority value
• log – Generates log messages when the packet
coming from the interface matches an ACL entry
Log messages are generated only for router ACLs
• mark [8021p<0-7>|dscp<0-63>[rule-precedence
<1-5000>[rule-description <WORD>]] – Specifies
packets to mark
• 8021p <0-7> – Modifies 802.1p VLAN user
priority. Select a VLAN user VLAN user priority
value
• dscp <0-63> – Sets the Differentiated Services
Code Point (DSCP) code-point value to
<dscp-codepoint-value> (0-63)
• <0-63> – Specify a DSCP codepoint value from
0-63
• rule-precedence<1-5000>rule-description
<WORD> – Defines an integer value between
1-5000. This value sets the rule precedence in the
ACL
• rule-description – Access-list entry
description
• <WORD> – Specify the description up to 128
characters
• type[8021q|<1-65535>|aarp|apple-
talk|arp|ip|ipv6|ipx|mint|rarp|wisp] [log <0-7>|
rule-precedence <1-5000>] – Ether Type
• 8021q – VLAN Ether Type (0x8100)
• <1-65535> – Ethernet protocol number
Comments to this Manuals