
Industrial Managed
Ethernet Switch
User Manual
錯誤
!
使用
[
常用
]
索
引標籤將
Heading
1,Product Manual
套用到您想要在此處
顯示的文字。
Page
123
of
191
Figure 2.137 Security Access Control List Information Webpage (MAC Based Filtering)
The main ACL entries for filtering by MAC layer (also called L2 filtering) as shown in Figure 2.137 include MAC
address, VLAN ID, VLAN Priority Tag and Ether Type
Table 2.47 describes definition of each in details
.
Here note
that if any field is empty, that ACL entry will be ignored
.
Table 2.47 Descriptions of Main ACL Entries for L2 Filtering in ACL Webpage
ACL Entry
Definition
Range
Source or
Destination
MAC Addresses
MAC address are the fields of the Ethernet
frame header
.
The Mask item is a bit mask
for comparing range
.
For every non
-
zero bit in the Mask, its relative bit in the
IP address will be compared
.
If the Mask is 0
.
0
.
0
.
0,
then this condition is always accepted
.
If the Mask is
empty, it is considered equal to the Mask of
255
.
255
.
255
.
255 and all of bits in the IP Address are
compared
.
VLAN ID
The VLAN ID field of 802
.
1Q VLAN tag in
the Ethernet frame header
.
If the trunk
ports are created, they will also be
shown on the port list
.
If you want to
select a trunk port, please make sure
that there are no ACL entry using the
physical ports which are belonging this
trunk port
.
The item value is between 1~4094
.
VLAN Priority
Tag
The Priority field of 802
.
1Q VLAN tag in
the Ethernet frame header
.
The item value is between 0~7
.
Ether Type
The Ethernet type field in the Ethernet
frame header
.
The followings are
examples
.
The value 0x8000 is an IPv4
packet
.
The value 0x86DD is an IPv6
packet
.
The value 0x8100 is an 802
.
1Q
packet
.
The item value is between 0~0xFFFF
.