ECS4110-28P_Management Guide

Table Of Contents
C
HAPTER
26
| Access Control Lists
IPv4 ACLs
– 975 –
ip access-group This command binds an IPv4 ACL to a port. Use the no form to remove the
port.
SYNTAX
ip access-group acl-name in
[time-range time-range-name] [counter]
no ip access-group acl-name in
acl-name – Name of the ACL. (Maximum length: 32 characters)
in – Indicates that this list applies to ingress packets.
time-range-name - Name of the time range.
(Range: 1-16 characters)
counter Enables counter for ACL statistics.
DEFAULT SETTING
None
COMMAND MODE
Interface Configuration (Ethernet)
COMMAND USAGE
Only one ACL can be bound to a port.
If an ACL is already bound to a port and you bind a different ACL to it,
the switch will replace the old binding with the new one.
EXAMPLE
Console(config)#int eth 1/2
Console(config-if)#ip access-group david in
Console(config-if)#
RELATED COMMANDS
show ip access-list (976)
Time Range (782)
show ip
access-group
This command shows the ports assigned to IP ACLs.
COMMAND MODE
Privileged Exec
EXAMPLE
Console#show ip access-group
Interface ethernet 1/2
IP access-list david in
Console#