<!DOCTYPE html
  PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
   <head>
      <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /><?xml-stylesheet href="http://www.w3.org/Math/XSL/mathml.xsl" type="text/xsl" ?>
      <meta http-equiv="Content-Script-Type" content="text/javascript" />
      <meta http-equiv="Content-Style-Type" content="text/css" />
      <meta name="description" content="Netzwerktechnik 2: Editieren von ACLs (heute). " />
      <meta name="copyright" content="" />
      <meta name="author" content="" />
      <meta name="keywords"
            content="Netzwerktechnik 2, Spanning-Tree-Protokoll (STP),  Rapid-Spanning-Tree-Protokoll (RSTP), Per-VLAN-Spanning-Tree (PVST), Multiple-Spanning-Tree (MST), Variable-Length-Subnet-Masking (VLSM), Route-Summarization, Overhead, Message-Digest Algorithm 5 (MD5), Time Division Multiplexing, Packet Assembler/Disassembler, Internetwork Operating System (IOS), Access-Routern, Non-volatile RAM (NVRAM), Public Switched Telephone Network (PSTN), Security-Gateway, Inaktivitätszeit, Trunk, eLML" />
      <title>1.13.13. Editieren von ACLs (heute)</title>
      <link href="../../../_templates/airnet/elml.css" type="text/css" rel="stylesheet"
            media="screen" />
      <link href="../../../_templates/airnet/elml_print.css" type="text/css"
            rel="stylesheet"
            media="print,handheld" /><script src="../../../_templates/airnet/elml.js" type="text/javascript"></script><script type="text/javascript"
              src="../../../_templates/airnet/lightwindow/javascript/prototype.js"
              id="lwloader_prototype_js"></script><script type="text/javascript"
              src="../../../_templates/airnet/lightwindow/javascript/effects.js"
              id="lwloader_effects_js"></script><script type="text/javascript"
              src="../../../_templates/airnet/lightwindow/javascript/lightwindow_loader.js"
              id="lwloader"></script><script type="text/javascript" language="JavaScript1.2" src="scorm_generic.js"></script></head>
   <body xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:elml="http://www.elml.ch"
         xmlns:xhtml="http://www.w3.org/1999/xhtml"
         xmlns:functx="http://www.functx.com"
         onunload="finish()">
      <div class="bodywidth"><a accesskey="1" href="#navigation" title="Zur Navigation springen">
     <!----> </a><a accesskey="2" href="#content" title="Zum Inhalt springen"> <!----> </a><a name="top"> <!----> </a><div id="breadcrumbnav"><a href="index.xml">Netzwerktechnik 2</a> > <a href="unit_AufbAnwAL.xml">Aufbau und Anwendung von Access-Control-Listen</a> > <a href="#top">Editieren von ACLs (heute)</a><div style="float:right;">
               <div id="logos_lang">
                  <table>
                     <tbody>
                        <tr>
                           <td class="columnRight"><a><img alt="airnet logo" height="25"
                                      src="/_templates/airnet/authoring/images/airnet_logo.jpg" /></a></td>
                        </tr>
                     </tbody>
                  </table>
               </div>
            </div>
         </div>
         <div id="headerarea">
            <video src="/_templates/airnet/authoring/images/video.mp4" type="video/mp4"
                   width="1000"
                   height="250"
                   unit="pixels"
                   autoplay="yes"
                   loop="yes"
                   poster="/_templates/airnet/authoring/images/Head.jpg"></video>
         </div>
         <div class="floatclear"> <!----> </div>
         <div id="primarnav"><a class="namedanchor" name="navigation"> <!----> </a><a href="unit_EntwLANBer.xml">Entwicklung des LAN-Bereichs</a><div class="linkseparator">|</div><a href="unit_GrundfBrdg.xml">Grundfunktion einer Transparent-Bridge</a><div class="linkseparator">|</div><a href="unit_Lay2Sw.xml">Der Layer-2-Switch</a><div class="linkseparator">|</div><a href="unit_Lay3Rout.xml">Layer-3-Routing</a><div class="linkseparator">|</div><a href="unit_STPErwCisco.xml">Spanning-Tree-Erweiterungen -- Cisco</a><div class="linkseparator">|</div><a href="unit_STPErwIEEE.xml">Spanning-Tree-Erweiterungen – IEEE</a><div class="linkseparator">|</div><a href="unit_STPOpt.xml">Spanning-Tree-Optionen</a><div class="linkseparator">|</div><a href="unit_SwSec.xml">Switch-Security</a><div class="linkseparator">|</div><a href="unit_VerwHTTP.xml">Verwaltung mit HTTP</a><div class="linkseparator">|</div><a href="unit_DrahtL.xml">Drahtlose Kommunikation</a><div class="linkseparator">|</div><a href="unit_VLSMRoutSum.xml">VLSM und Route-Summarization</a><div class="linkseparator">|</div><a href="unit_GrundKonfRIP.xml">Grundlagen und Konfiguration von RIP</a><div class="linkseparator">|</div><a href="unit_AufbAnwAL.xml">Aufbau und Anwendung von Access-Control-Listen</a><div class="linkseparator">|</div><a href="unit_NATProt.xml">Adressübersetzung durch NAT und PAT</a><div class="linkseparator">|</div><a href="unit_VPN.xml">Virtuelle Private Netze (Virtual Private Networks)</a><div class="linkseparator">|</div><a href="unit_KryptIPSecVPNs.xml">Kryptographie und IPSec VPNs</a><div class="linkseparator">|</div><a href="unit_GrundIPv6.xml">Grundlagen von IPv6</a><div class="linkseparator">|</div><a href="unit_SNMP.xml">Simple Network Management Protocol (SNMP)</a><div class="linkseparator">|</div>
         </div>
         <div class="floatclear"> <!----> </div>
         <div class="endheaderline"><img alt="separation line" height="1"
                 src="/_templates/airnet/authoring/images/1.gif"
                 width="1" /></div>
         <div id="toolnav"><!---->
     </div>
         <div class="floatclear"> <!----> </div>
         <div id="col1">
            <div id="secnav">
               <div class="solidline"><img alt="separation line" height="1"
                       src="/_templates/airnet/authoring/images/1.gif"
                       width="1" /></div>
               <p class="titel"><br /><a href="index.xml">1. Netzwerktechnik 2</a></p>
               <div class="dotlinelead"><img alt="separation line" height="1"
                       src="/_templates/airnet/authoring/images/1.gif"
                       width="1" /></div>
               <ul>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <ul>
                     <li><a href="AufbAnwAL_learningObject1.xml">1.13.1. Definition von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject2.xml">1.13.2. Einsatzgebiet von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject3.xml">1.13.3. Grundsätzliche Bestimmungen</a></li>
                     <li><a href="AufbAnwAL_learningObject4.xml">1.13.4. Grundsätzliche Bestimmungen</a></li>
                     <li><a href="AufbAnwAL_learningObject5.xml">1.13.5. Grundsätzliche Bestimmungen und Nummernbereiche von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject6.xml">1.13.6. Grundsätzliche Bestimmungen</a></li>
                     <li><a href="AufbAnwAL_learningObject7.xml">1.13.7. Abarbeitung der Statements</a></li>
                     <li><a href="AufbAnwAL_learningObject8.xml">1.13.8. Wildcard-Maske und Abkürzungen</a></li>
                     <li><a href="AufbAnwAL_learningObject9.xml">1.13.9. IP-Standard-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject10.xml">1.13.10. IP-Extended-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject11.xml">1.13.11. Verifizieren von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject12.xml">1.13.12. Editieren von ACLs (früher)</a></li>
                     <li><a class="activ" href="AufbAnwAL_learningObject13.xml">1.13.13. Editieren von ACLs (heute)</a></li>
                     <li><a href="AufbAnwAL_learningObject14.xml">1.13.14. Querverweis zur ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject15.xml">1.13.15. Incoming-/Outgoing-Datenfilter</a></li>
                     <li><a href="AufbAnwAL_learningObject16.xml">1.13.16. Incoming-Datenfilter</a></li>
                     <li><a href="AufbAnwAL_learningObject17.xml">1.13.17. Outgoing-Datenfilter</a></li>
                     <li><a href="AufbAnwAL_learningObject18.xml">1.13.18. Grundsätzliches zu Datenfiltern</a></li>
                     <li><a href="AufbAnwAL_learningObject19.xml">1.13.19. Verifizieren von Datenfiltern</a></li>
                     <li><a href="AufbAnwAL_learningObject20.xml">1.13.20. VTY-Zugriffseinschränkung</a></li>
                     <li><a href="AufbAnwAL_learningObject21.xml">1.13.21. Querverbindung zur ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject22.xml">1.13.22. Zugriffseinschränkung auf Router</a></li>
                     <li><a href="AufbAnwAL_learningObject23.xml">1.13.23. IP-Standard-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject24.xml">1.13.24. IP-Extended-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject25.xml">1.13.25. IP-Extended-ACL</a></li>
                  </ul>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <li><a href="CR2-EG_glossary.xml">1.19. Glossar</a></li>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <li><a href="CR2-EG_index.xml">1.20. Stichwortverzeichnis</a></li>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
               </ul> <!----> 
            </div>
         </div>
         <div class="contcol2"><a accesskey="2" class="namedanchor" name="content"> <!----> </a><div class="content">
               <h1 id="AufbAnwAL_learningObject13.xml">1.13.13. Editieren von ACLs (heute)</h1>
               <div id="d8e11119.xml" class="look">
                  <table class="table" id="d8e11120" width="100%">
                     <thead>
                        <tr class="tablerowAlt">
                           <th class="tableheading" id="d8e11122" style="text-align: center; ">Präsentation</th>
                        </tr>
                     </thead>
                     <tbody>
                        <tr class="tablerowAlt">
                           <td class="tabledata" id="d8e11125">
                              <div class="box" id="d8e11126">
                                 <ol class="list" id="d8e11127">
                                    <li class="itemAlt"><code>G1S1(config)#ip access-list extended 100</code></li>
                                    <li class="item"><code>G1S1(config-ext-nacl)#</code></li>
                                    <li class="itemAlt"><code>G1S1(config-ext-nacl)#10 permit ip 172.16.1.1 0.0.0.0 any</code></li>
                                    <li class="item"><code>G1S1(config-ext-nacl)#20 permit ip 172.16.2.1 0.0.0.0 any</code></li>
                                    <li class="itemAlt"><code>G1S1(config-ext-nacl)#30 permit ip 10.0.128.0 0.0.0.255 any</code></li>
                                    <li class="item"><code>G1S1(config-ext-nacl)#end</code></li>
                                    <li class="itemAlt"><code>G1S1#</code></li>
                                    <li class="item"><code>G1S1#show access-lists</code></li>
                                    <li class="itemAlt"><code>Extended IP access list 100</code></li>
                                    <li class="item"><code>    10 permit ip host 172.16.1.1 any</code></li>
                                    <li class="itemAlt"><code>    20 permit ip host 172.16.2.1 any</code></li>
                                    <li class="item"><code>    30 permit ip 10.0.128.0 0.0.0.255 any</code></li>
                                    <li class="itemAlt"><code>G1S1#</code></li>
                                    <li class="item"><code>G1S1#configure terminal</code></li>
                                    <li class="itemAlt"><code>G1S1(config)#ip access-list extended 100</code></li>
                                    <li class="item"><code>G1S1(config-ext-nacl)#15 deny ip 172.16.1.0 0.0.0.255 any</code></li>
                                    <li class="itemAlt"><code>G1S1(config-ext-nacl)#no 30</code></li>
                                    <li class="item"><code>G1S1(config-ext-nacl)#end</code></li>
                                    <li class="itemAlt"><code>G1S1#</code></li>
                                    <li class="item"><code>G1S1#show access-lists</code></li>
                                    <li class="itemAlt"><code>Extended IP access list 100</code></li>
                                    <li class="item"><code>    10 permit ip host 172.16.1.1 any</code></li>
                                    <li class="itemAlt"><code>    15 deny ip 172.16.1.0 0.0.0.255 any</code></li>
                                    <li class="item"><code>    20 permit ip host 172.16.2.1 any</code></li>
                                    <li class="itemAlt"><code>G1S1#</code></li>
                                 </ol>
                              </div>
                           </td>
                        </tr>
                     </tbody>
                  </table>
                  <p class="paragraph" id="d8e11205">Dies hat sich mittlerweile geändert. In der Abbildung ist zu sehen, dass
                     					durch den Befehl <code>ip access-list extended 100</code>
                     					vom globalen Konfigurationsmodus in den Extended-ACL-Konfigurationsmodus
                     					gewechselt wird. Dort gibt es die Möglichkeit, vor jedem Statement eine
                     					Sequenznummer zu definieren (Zeilen 3–5). Die Sequenznummern werden
                     					anschließend in der Ausgabe des Befehls <code>show
                        						access-lists</code>, der im privilegierten Modus eingegeben wird,
                     					angezeigt (ab Zeile 9). Soll nun ein neues Statement an einer bestimmten
                     					Stelle eingefügt werden, wird für dieses Statement eine Sequenznummer zwischen
                     					zwei vorhandenen Sequenznummern verwendet. Soll zum Beispiel ein Statement
                     					zwischen den Sequenznummern 10 und 20 eingefügt werden, kann die neue
                     					Sequenznummer aus einer Zahl zwischen 10 und 20, beispielsweise 15
                     					(Zeile 16), bestehen. Für den Fall, dass ein Statement von einer bestimmten
                     					Stelle gelöscht werden soll, wird einfach der Befehl <code>no</code> gefolgt von dessen Sequenznummer eingegeben. Der Befehl
                     						<code>no 30</code> (Zeile 17) löscht das
                     					Statement mit der Sequenznummer 30.
                  </p>
               </div>
            </div>
            <div class="footermargintop"> <!----> </div>
            <div class="topnav"><a href="#top">top</a></div>
            <div class="solidline"><img alt="separation line" height="1"
                    src="/_templates/airnet/authoring/images/1.gif"
                    width="1" /></div>
            <div id="footer"><a href="http://www.airnet.de">© AIRNET 2015</a> |  © <a href="http://www.elml.org/" target="_blank">(eLML)</a> | <a href="mailto:info@airnet.de">Kontakt</a> |  Update: 17.3.2015
            </div>
         </div>
      </div>
   </body>
</html>