Chapter 13: Security Measures
Access Control Lists
– 322 –
•
Time Range
– Name of a time range.
•
Counter
– Enables counter for ACL statistics.
W
EB
I
NTERFACE
To bind an ACL to a port:
1.
Click Security, ACL.
2.
Select Configure Interface from the Step list.
3.
Select Configure from the Action list.
4.
Select IP, MAC or IPv6 from the Type options.
5.
Select a port.
6.
Select the name of an ACL from the ACL list.
7.
Click Apply.
Figure 13-48: Binding a Port to an ACL
C
ONFIGURING
ACL M
IRRORING
After configuring ACLs, use the Security > ACL (Configure Interface – Add
Mirror) page to mirror traffic matching an ACL from one or more source
ports to a target port for real-time analysis. You can then attach a logic
analyzer or RMON probe to the target port and study the traffic crossing
the source VLAN(s) in a completely unobtrusive manner.
CLI R
EFERENCES
•
“Local Port Mirroring Commands” on page 973
C
OMMAND
U
SAGE
ACL-based mirroring is only used for ingress traffic. To mirror an ACL,
follow these steps:
1.
Create an ACL as described in the preceding sections.
Summary of Contents for SSE-G2252
Page 42: ...44 General IP Routing on page 627...
Page 603: ...Chapter 16 IP Configuration Setting the Switch s IP Address IP Version 6 609...
Page 883: ...Chapter 24 General Security Measures Port based Traffic Segmentation 894...
Page 989: ...Chapter 30 Congestion Control Commands Automatic Traffic Control Commands 1000 Console...
Page 1007: ...Chapter 33 Address Table Commands 1019...
Page 1137: ...Chapter 38 Quality of Service Commands 1150...