Table 301: Add Access Control List Rule Fields (continued)
Field
Description
Interface
The interface to use for the action:
•
Redirect – Allows traffic that matches a rule to be redirected to the
selected interface instead of being processed on the original port. The
redirect function and mirror function are mutually exclusive.
•
Mirror – Provides the ability to mirror traffic that matches a rule to the
selected interface. Mirroring is similar to the redirect function, except that
in flow-based mirroring a copy of the permitted traffic is delivered to the
mirror interface while the packet itself is forwarded normally through the
device.
Log
When this option is selected, logging is enabled for this ACL rule (subject to
resource availability in the device). If the Access List Trap Flag is also enabled,
this will cause periodic traps to be generated indicating the number of times
this rule went into effect during the current report interval. A fixed 5 minute
report interval is used for the entire system. A trap is not issued if the ACL
rule hit count is zero for the current interval.
Time Range Name
The name of the time range that will impose a time limitation on the ACL
rule. If a time range with the specified name does not exist, and the ACL
containing this ACL rule is associated with an interface, the ACL rule is
applied immediately. If a time range with specified name exists, and the ACL
containing this ACL rule is associated with an interface, the ACL rule is
applied when the time-range with specified name becomes active. The ACL
rule is removed when the time-range with specified name becomes inactive.
Committed Rate / Burst Size
The allowed transmission rate for frames on the interface (Committed Rate),
and the number of bytes allowed in a temporary traffic burst (Burst Rate).
After you click the
Resequence Rules
button, the Resequence ACL Rules window opens and allows you to
resequence rules of the ACL selected from the
ACL Identifier
field. The following information describes the fields
in this window.
Sequence Start
The starting sequence number for resequencing the existing rules.
Sequence Step
The increment of sequence numbers for resequencing the existing rules.
Click
Refresh
to update the information on the screen.
After you click the + (plus) button next to
ACL Remarks
, the Add ACL Remark window opens and
allows you to add a remark.
Access Control List Interface Summary
Use the Access Control List Interface Summary page to associate one or more
interfaces on the device. When an ACL is associated with an interface, traffic on the port is checked
against the rules defined within the ACL until a match is found. If the traffic does not match any rules
within an ACL, it is dropped because of the implicit deny all rule at the end of each ACL.
To display this page, click
QoS
>
Access Control Lists
>
Interfaces
in the navigation menu.
Use the buttons to perform the following tasks:
•
To apply an ACL to an interface, click
Add
and configure the settings in the available fields.
Configuring Quality of Service
ExtremeSwitching 200 Series: Administration Guide
307