10-1
10
IPv4 Access Control Lists (ACLs)
Introduction
An Access Control List (ACL) is a list of one or more Access Control Entries
(ACEs) specifying the criteria the switch uses to either permit (forward) or
deny (drop) IP packets traversing the switch’s interfaces. This chapter
describes how to configure, apply, and edit static IPv4 ACLs in a network
populated with the switches covered by this guide, and how to monitor IPv4
ACL actions.
N o t e
This chapter describes static ACLs for IPv4 configuration and operation.
Because the switches covered by this guide support IPv4/IPv6 dual-stack
operation, simultaneous operation of statically configured IPv4 and IPv6 ACLs
is supported in these switches, as well as dynamic (RADIUS-assigned) ACLs
capable of filtering both IPv4 and IPv6 traffic from authenticated clients.
However:
■
IPv4 and IPv6 ACEs cannot be combined in the same static ACL.
■
IPv4 and IPv6 static ACLs do not filter each other’s traffic.
In this chapter, unless otherwise noted:
■
The term “ACL” refers to static IPv4 ACLs.
■
Descriptions of ACL operation apply only to static IPv4 ACLs.
For information on configuring static IPv6 ACLs, refer to the chapter titled
“IPv6 Access Control Lists (ACLs)” in the
IPv6 Configuration Guide
for your
switch.
.
Feature
Default
CLI
Standard ACLs
None
Extended ACLs
None
Enable or Disable an ACL
n/a
Display ACL Data
n/a
Delete an ACL
n/a
Summary of Contents for HP ProCurve Series 6600
Page 2: ......
Page 6: ...iv ...
Page 26: ...xxiv ...
Page 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Page 204: ...4 72 Web and MAC Authentication Client Status ...
Page 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Page 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Page 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Page 756: ...16 8 Key Management System Configuring Key Chain Management ...
Page 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Page 777: ......