Management ACL Commands
Cisco Sx350 Ph. 2.2.5 Devices - Command Line Interface Reference Guide
0
39.1 deny (Management)
To set permit rules (ACEs) for the management access list (ACL), use the deny
Management Access-list Configuration mode command.
Syntax
interface-id
deny [
] [service
ipv4-address
deny ip-source {
prefix-length
interface-id
}] [
Parameters
•
interface-id—(Optional) Specifies an interface ID. The interface ID can be
one of the following types: Ethernet port, Port-channel or VLAN
•
service
service
Telnet, SSH, HTTP, HTTPS and SNMP.
•
ipv4-address
—Specifies the source IPv4 address.
•
ipv6-address
/
source IPv6 address prefix length. The prefix length must be preceded by a
forward slash (/). The parameter is optional.
•
mask
mask
—Specifies the source IPv4 address network mask. The
parameter is relevant only to IPv4 addresses.
•
prefix-length
mask
IPv4 address prefix. The prefix length must be preceded by a forward slash
(/). The parameter is relevant only to IPv4 addresses. (Range: 0–32)
Default Configuration
No rules are configured.
service
]
pv6-address
| i
service
] [service
—(Optional) Specifies the service type. Possible values are:
ipv6-prefix-length
—Specifies the source IPv6 address and
—Specifies the number of bits that comprise the source
39
ipv6-prefix-length
/
} [mask {
]
mask
|
816