80
C
HAPTER
4: M
ANAGING
D
EVICE
S
ECURITY
■
Match IP Precedence
— Matches the packet IP Precedence value to
the rule. Either the DSCP value or the IP Precedence value is used to
match packets to the rule.
■
Action
— Selects the ACL forwarding action. In addition, the port can
be shut down, a trap can be sent to the network administrator, or
packet is assigned rate limiting restrictions for forwarding. The options
are as follows:
■
Permit
— Forwards packets which meet the ACL criteria.
■
Deny
— Drops packets which meet the ACL criteria.
■
Shutdown
— Drops packet that meets the ACL criteria, and
disables the port to which the packet was addressed. Ports are
reactivated from the
Port Administration Setup Page
.
2
Select an ACL from the
Select ACL
list.
3
Highlight the rule to be modified.
4
Modify the fields in the
Modify Rule
section.
5
Click
. The ACL rule is modified, and the device is updated.
Removing IP Based
ACLs
The
IP Based ACL Remove Page
allows the user to remove IP-based ACLs
or IP-based ACL rules.
Monitor users have no access to this page.
Click
Device > ACL > IP Based ACL > Remove
. The
IP Based ACL
Remove Page
opens: