Access Control
Configuring IPv4-Based ACEs
Cisco 220 Series Smart Switches Administration Guide Release 1.1.0.x
240
17
Configuring IPv4-Based ACEs
To add rules (ACEs) to an IPv4-based ACL:
STEP 1
Click
Access Control
>
IPv4-Based ACE
.
STEP 2
Select an ACL, and click
Go
. All currently defined IPv4-based ACEs for the
selected ACL are displayed.
STEP 3
To add a rule (ACE) for the selected ACL, click
Add
.
STEP 4
Enter the following information:
•
ACL Name
—Displays the name of the ACL.
•
Priority
—Enter the priority. ACEs with higher priority are processed first.
•
Action
—Select the action assigned to the packet matching the ACE. The
options are:
-
Permit
—Forwards packets that meet the ACE criteria.
-
Deny
—Drops packets that meet the ACE criteria.
-
Shutdown
—Drops packet that meets the ACE criteria and disables the
port to which the packet was addressed. Ports are reactivated on the
Port Management > Error Recovery Settings page.
•
Protocol
—Creates an ACE based on a specific protocol or protocol ID.
-
Any (IP)
—Select to accept all IP protocols.
-
Select from list
—Select one of the following protocols from the drop-
down menu:
ICMP—Internet Control Message Protocol
IP in IP—IP in IP encapsulation
TCP—Transmission Control Protocol
EGP—Exterior Gateway Protocol
IGP—Interior Gateway Protocol
UDP—User Datagram Protocol
HMP—Host Mapping Protocol
RDP—Reliable Datagram Protocol