194
EtherWAN Managed Switch Users Guide
ACL (ACCESS CONTROL LIST)
This section applies only to specific models of EtherWAN Switches.
The settings in the ACL feature of the EtherWAN switch can be used to control which
packets are allowed to enter the switch (Packet Filtering), as well as to control the amount of
bandwidth that can be allocated for those packets (Bandwidth Policing).
General Overview
The ACL feature on the EtherWAN Managed Switch filters packets through access control
lists. Any combination of 4 different types of access control lists (called Access Lists) can be
used for this purpose. These four different types of access control lists are explained below:
IP Access List:
This Access List can b
e used to filter IP packets based on the packet’s source IP
address only.
IP Access List (Extended):
This Access List can be used to filter IP packets based on the packet’s source and
destination IP addresses, as well as the packet’s source and destination transport
layer protocol port numbers.
MAC Access List:
This Access List can be used to filter Ethernet packets based on the packet’s source
and destination Ethernet addresse
s as well as the packet’s Ethernet payload protocol
number (EtherType).
Layer 4:
This Access List, if it is used by itself, can only be used to classify IP packets based
only on the IP packet’s source and destination transport layer protocol port numbers.
Use this Access List in conjunction with another type of Access List mentioned
above, if you wish to filter any packet from entry to the switch that did not match the
classification rules from this Access Lists, otherwise all packets that did not match
the classification rules of this Access List will also be allowed entry into the switch.
Note:
You can use any combination of the above four types of Access Lists to
filter packets through the ACL feature, the switch will apply these Access Lists in the
order that they were configured. Since Access List filters allow packets through, there
must be at least one catch all deny rule that can deny all types of packets from entry
to the switch in the very last Access List, This will ensure that only packets specified
in the access list will be allowed.
Summary of Contents for EX72129A
Page 27: ...27 EtherWAN Managed Switch Users Guide Figure 3 System Information...
Page 31: ...31 EtherWAN Managed Switch Users Guide Figure 5 IP Address...
Page 55: ...55 EtherWAN Managed Switch Users Guide Figure 13 User Privilege Page...
Page 63: ...63 EtherWAN Managed Switch Users Guide Figure 16 Remote Logging Page...
Page 84: ...84 EtherWAN Managed Switch Users Guide Figure 27 Bridging...
Page 99: ...99 EtherWAN Managed Switch Users Guide Figure 41 PoE Port Setting...
Page 101: ...101 EtherWAN Managed Switch Users Guide Figure 43 PoE Power Scheduling...
Page 122: ...122 EtherWAN Managed Switch Users Guide Figure 45 Port Trunking Version 2...
Page 124: ...124 EtherWAN Managed Switch Users Guide Figure 46 LACP Trunking Version 1...
Page 126: ...126 EtherWAN Managed Switch Users Guide Figure 47 LACP Trunking Version 2...
Page 131: ...131 EtherWAN Managed Switch Users Guide Figure 48 STP Ring Global Configuration...
Page 133: ...133 EtherWAN Managed Switch Users Guide Figure 50 Bridge ID Display...
Page 135: ...135 EtherWAN Managed Switch Users Guide Figure 51 Max Age Hello Timer Forward Delay...
Page 144: ...144 EtherWAN Managed Switch Users Guide Figure 55 Enabling MSTP...
Page 146: ...146 EtherWAN Managed Switch Users Guide Figure 57 Bridge ID Display...
Page 155: ...155 EtherWAN Managed Switch Users Guide Figure 64 Port Cost Priority...
Page 163: ...163 EtherWAN Managed Switch Users Guide Figure 67 Ring Settings...
Page 196: ...196 EtherWAN Managed Switch Users Guide Figure 85 Enabling QoS...
Page 212: ...212 EtherWAN Managed Switch Users Guide Figure 101 Removing a Policy Map...
Page 224: ...224 EtherWAN Managed Switch Users Guide Figure 104 SNMP General Settings...
Page 242: ...242 EtherWAN Managed Switch Users Guide Figure 117 LLDP Global Settings...
Page 244: ...244 EtherWAN Managed Switch Users Guide Figure 118 LLDP Ports Settings...
Page 281: ...281 EtherWAN Managed Switch Users Guide Figure 136 Daylight Savings Date Mode...