An EX3500 extended ACL consists of a set of deny /permit rules that filter packets based on both source and destination IPv4 addresses. Each rule specifies a set of match criteria (the source and destination IP addresses) and has a unique precedence value assigned. These ACL rules are applied sequentially to the traffic at a port, by a firewall-supported device, in an increasing order of their precedence. When a packet matches the criteria specified in a rule the packet is either forwarded or dropped based on the rule type.
![]() EX3500 Extended Access List Config Mode Commands
|
Note
To implement the EX3500 extended ACL, apply it directly to a EX3500 device, or to an EX3500 profile. For more information, see GUID-165BDC09-66E9-4193-B3D1-805296F465BB.