General Security Measures
3-115
3
Binding a Port to an Access Control List
After configuring the Access Control Lists (ACL), you can bind the ports that need to
filter traffic to the appropriate ACLs. You can assign one IP access list to any port.
Command Usage
• Each ACL can have up to 32 rules.
• This switch supports ACLs for ingress filtering only.
Command Attributes
•
Port
– Fixed port or SFP module.
(Range: 1-28 on iES4028F/iES4028FP, 1-24 on iES4024GP)
•
IP
– Specifies the IP ACL to bind to a port.
•
MAC
– Specifies the MAC ACL to bind to a port.
•
IN
– ACL for ingress packets.
Web
– Click Security, ACL, Port Binding. Mark the Enable field for the port you want
to bind to an ACL for ingress or egress traffic, select the required ACL from the
drop-down list, then click Apply.
Figure 3-69 Configuring ACL Port Binding
CLI
– This example assigns an IP access list to port 1, and an IP access list to
port 3.
Console(config)#interface ethernet 1/1
Console(config-if)#ip access-group david in
Console(config-if)#exit
Console(config)#interface ethernet 1/3
Console(config-if)#ip access-group david in
Console(config-if)#
Summary of Contents for iES4028F
Page 1: ...iES4028F 4028FP 4024GP ...
Page 4: ...iv This page is intentionally left blank ...
Page 10: ...x This page is intentionally left blank ...
Page 28: ...Contents xxviii This page is intentionally left blank ...
Page 32: ...Tables xxxii This page is intentionally left blank ...
Page 46: ...Introduction 1 10 1 This page is intentionally left blank ...
Page 336: ...Configuring the Switch 3 280 3 This page is intentionally left blank ...
Page 688: ...Command Line Interface 4 352 4 This page is intentionally left blank ...
Page 702: ...Glossary Glossary 8 This page is intentionally left blank ...
Page 710: ...Index 8 Index This page is intentionally left blank ...
Page 711: ...This page is intentionally left blank ...
Page 712: ...iES4028F 4028FP 4024GP ...