Configuring an Extended IPv4 ACL
Complete the following steps to configure an extended IPv4 ACL.
- Select . All the configured ACLs are listed in the main pane. You can perform the following actions:
- Add an ACL: Continue to step 2 to add a new ACL.
- Edit an ACL: Select
to display the Edit Access
List dialog box. You can delete the existing rule or add new
rules. Make the necessary changes and select Apply to
apply the changes. - Delete an ACL: Select
to display the Delete Access
List dialog box. select Apply to
delete the ACL.
- Select
to
display the Add Access List dialog box.
- Select the IPv4 tab and complete the following fields:
- For Rules, select
to
add ACL rules with the following parameters:- Seq: Assign a sequence number to the ACL rule.
- Action: Select permit or deny from the list to filter the traffic according to the rules.
- Protocol: Select the protocol type (IP, TCP, or UDP) to be specified as a match for filtering.
- Source IP: Enter the source IP address for which you want to filter the subnet.
- Destination IP: Enter the destination IP address for which you want to filter the subnet.
- Source Port: Specify the source port of the specified protocol.
- Destination Port: Specify the destination port of the specified protocol.
- DSCP Matching: Allows filtering by DSCP value.
- DSCP Marking: Assign the DSCP value for the packet.
- Internal Priority: Assign the internal queuing priority (traffic class) for the packet.
- Select Apply to create the extended IPv4 ACL.
=GUID-7DB5A1E9-8BA4-44B6-8727-46F6105DAD2A=3=en-US=Low.png)