104 | Access Control Lists (ACLs)w w w . d e l l . c o m | s u p p o r t . d e l l . c o m • Configuring ACLs to Loopback• Applying an ACL on Loopback Interfaces• IP Prefix Lists• ACL Resequencing• Route MapsIP Access Control Lists (ACLs)In the Dell Force10 switch/routers, you can create two different types of IP ACLs: standard or extended. Astandard ACL filters packets based on the source IP packet. An extended ACL filters traffic based on thefollowing criteria (for more information on ACL supported options see the FTOS Command Reference):• IP protocol number• Source IP address• Destination IP address• Source TCP port number• Destination TCP port number• Source UDP port number• Destination UDP port numberFor extended ACL TCP and UDP filters, you can match criteria on specific or ranges of TCP or UDPports. For extended ACL TCP filters, you can also match criteria on established TCP sessions.When creating an access list, the sequence of the filters is important. You have a choice of assigningsequence numbers to the filters as you enter them, or FTOS will assign numbers in the order the filters arecreated. The sequence numbers, whether configured or assigned by FTOS, are listed in the show configand show ip accounting access-list command display output.Ingress and egress Hot Lock ACLs allow you to append or delete new rules into an existing ACL (alreadywritten into CAM) without disrupting traffic flow. Existing entries in CAM are shuffled to accommodatethe new entries. Hot Lock ACLs are enabled by default and support both standard and extended ACLs andon all platforms.CAM Profiling, CAM Allocation, and CAM OptimizationCAM Profiling is supported on platform eUser Configurable CAM Allocations are supported on platform c and sCAM optimization is supported on platforms c sNote: Hot Lock ACLs are supported for Ingress ACLs only.