A class that applies a set of ACLs to interfaces specifying,
for each interface the order of the ACL with respect to other
ACLs applied to the same interface and, for each ACL the
action to take for a packet that matches a permit ACE in that
ACL. Interfaces are specified abstractly in terms of
interface role combinations.