![Ubiquiti ES-24-250W Administration Manual Download Page 237](http://html2.mh-extra.com/html/ubiquiti/es-24-250w/es-24-250w_administration-manual_3227362237.webp)
236
Configuring Quality of Service
EdgeSwitch
™
Administration Guide
Ubiquiti Networks, Inc.
Access Control List Interface Summary
Use the Access Control List Interface Summary page to associate one or more ACLs with one or more interfaces
on the device. When an ACL is associated with an interface, traffic on the port is checked against the rules
defined within the ACL until a match is found. If the traffic does not match any rules within an ACL, it is
dropped because of the implicit deny all rule at the end of each ACL.
To display the page, click QoS
>
Access Control Lists
>
Interfaces in the navigation menu.
Access Control List Interface Summary
Access Control List Interface Summary Fields
Field
Description
Interface
The interface that has an associated ACL.
Direction
Indicates whether the packet is checked against the rules in an ACL when it is received on an interface
(Inbound) or after it has been received, routed, and is ready to exit an interface (Outbound).
Sequence Number
The order the ACL is applied to traffic on the interface relative to other ACLs associated with the
interface in the same direction. When multiple ACLs are applied to the same interface in the same
direction, the ACL with the lowest sequence number is applied first, and the other ACLs are applied in
ascending numerical order.
ACL Type
The ACL type, which determines what criteria can be used to match packets. The type also determines
which attributes can be applied to matching traffic. IPv4 ACLs classify Layer-3 and Layer-4 IPv4 traffic,
IPv6 ACLs classify Layer-3 and Layer-4 IPv6 traffic, and MAC ACLs classify Layer-2 traffic. The ACL types
are as follows:
•
IPv4 Standard
Match criteria is based on the source address of IPv4 packets.
•
IPv4 Extended
Match criteria can be based on the source and destination addresses, source and
destination Layer-4 ports, and protocol type of IPv4 packets.
•
IPv4 Named
Match criteria is the same as IPv4 Extended ACLs, but the ACL ID can be an
alphanumeric name instead of a number.
•
IPv6 Named
Match criteria can be based on information including the source and destination
IPv6 addresses, source and destination Layer-4 ports, and protocol type within IPv6 packets.
•
Extended MAC
Match criteria can be based on the source and destination MAC addresses, 802.1p
user priority, VLAN ID, and EtherType value within Ethernet frames.
ACL Identifier
The name or number that identifies the ACL. When applying an ACL to an interface, the ACL Identifier
menu includes only the ACLs within the selected ACL Type.
Use the buttons to perform the following tasks:
•
To apply an ACL to an interface, click Add and configure the settings in the available fields.
•
To remove the association between an interface and an ACL, select each entry to delete and click
Remove. You must confirm the action before the entry is deleted.
•
Click Refresh to refresh the page with the most current data from the switch.
To retain the changes across the switch’s next power cycle, click System
>
Configuration Storage
>
Save.