To configure the system to provide access control list facility to subscribers:
Step 1
Apply the configured access control list by following the example configuration in
Subscriber via APNs, on page 199
.
Step 2
Verify that ACL is applied properly on interface by following the steps in
Verifying the ACL Configuration to APNs,
on page 200
.
Step 3
Save your configuration to flash memory, an external memory device, and/or a network location using the Exec mode
save configuration
command. For additional information refer to the
Verifying and Saving Your Configuration
chapter.
Verifying the ACL Configuration to APNs
To verify the ACL configuration:
Verify that your ACL lists were applied properly by entering the following command in Exec Mode:
show configuration context context_name
context_name
is the name of the context containing the APN
apn1
having
default
subscriber to which the ACL(s) was/were
applied.
The output of this command displays the configuration of the entire context. Examine the output for the commands
pertaining to interface configuration. The commands display the ACL(s) applied using this procedure.
configure
context
context_name
ip access-list
acl_name
deny host
ip_address
deny ip any host
ip_address
exit
ip access-group
access_group_name
interface
interface
ip address
ip_address/mask
exit
subscriber default
exit
apn
apn_name
ip access-group
access_group_name
in
ip access-group
access_group_name
out
end
ASR 5500 System Administration Guide, StarOS Release 21.5
200
Access Control Lists
Applying a Single ACL to Multiple Subscribers