64
C
HAPTER
4: M
ANAGING
D
EVICE
S
ECURITY
■
Ethertype
— Provides an identifier that differentiates between
various types of protocols.
■
Action
— Indicates the ACL forwarding action. In addition, the port
can be shut down, a trap can be sent to the network administrator, or
packet is assigned rate limiting restrictions for forwarding. The options
are as follows:
■
Permit
— Forwards packets which meet the ACL criteria.
■
Deny
— Drops packets which meet the ACL criteria.
■
Shutdown
— Drops packet that meets the ACL criteria, and
disables the port to which the packet was addressed. Ports are
reactivated from the
Port Administration Setup Page
.
Configuring MAC
Based ACLs
The
MAC Based ACL Setup Page
allows the network administrator to
create and define rules for MAC-based ACLs.
Monitor users have no access to this page.
To configure MAC-based ACLs:
Click
Device > ACL > MAC Based ACL > Setup
. The
MAC Based ACL
Setup Page
opens:
Figure 28
MAC Based ACL Setup Page
The
MAC Based ACL Setup Page
contains the following fields: