This procedure is applicable to access control lists only.
To specify that the rule only applies to packets that are part of an established TCP session (a session in with the TCP ACK or RST flag is set), use the tcp established command.
Enter no tcp established to specify that the rule applies to all TCP packets.
ADDITIONAL INFORMATION:
In either case, the command also sets the IP protocol parameter to TCP.
The following command specifies that rule 6 in access control list 301 only matches packets that are part of an established TCP session: