Configuring Named, Extended ACLs
For a match to occur with an ACE in an extended ACL, a packet must have
the source and destination address criteria specified by the ACE, as well as
any IPv4 protocol-specific criteria included in the command.
Use the following general steps to create or add to a named, extended ACL:
1.
Create and/or enter the context of a named, extended ACL.
2.
Enter the first ACE in a new, extended ACL or append an ACE to the end
of an existing, extended ACL.
This section describes the commands for performing these steps. For other
ACL topics, refer to the following:
Topic
configuring named, standard ACLs
configuring numbered, standard ACLs
configuring numbered, extended ACLs
applying or removing an ACL on an interface
deleting an ACL
editing an ACL
sequence numbering in ACLs
including remarks in an ACL
displaying ACL configuration data
creating or editing ACLs offline
enabling ACL "Deny" logging
IPv4 Access Control Lists (ACLs)
Configuring Extended ACLs
Page
10-52
10-55
10-74
10-81
10-85
10-86
10-87
10-92
10-97
10-107
10-112
10-61