C
HAPTER
14
| Security Measures
Access Control Lists
– 306 –
C
ONFIGURING AN
E
XTENDED
IP
V
4 ACL
Use the Security > ACL (Configure ACL - Add Rule - IP Extended) page to
configure an Extended IPv4 ACL.
CLI R
EFERENCES
◆
"permit, deny (Extended IPv4 ACL)" on page 804
◆
"show ip access-list" on page 807
◆
"Time Range" on page 667
P
ARAMETERS
These parameters are displayed in the web interface:
◆
Type
– Selects the type of ACLs to show in the Name list.
◆
Name
– Shows the names of ACLs matching the selected type.
◆
Action
– An ACL can contain any combination of permit or deny rules.
◆
Source/Destination Address Type
– Specifies the source or
destination IP address. Use “Any” to include all possible addresses,
“Host” to specify a specific host address in the Address field, or “IP” to
specify a range of addresses with the Address and Subnet Mask fields.
(Options: Any, Host, IP; Default: Any)
◆
Source/Destination IP Address
– Source or destination IP address.
◆
Source/Destination Subnet Mask
– Subnet mask for source or
destination address. (See the description for Subnet Mask on
page 304
.)
◆
Source/Destination Port
– Source/destination port number for the
specified protocol type. (Range: 0-65535)
◆
Source/Destination Port Bit Mask
– Decimal number representing
the port bits to match. (Range: 0-65535)
◆
Protocol
– Specifies the protocol type to match as TCP, UDP or Others,
where others indicates a specific protocol number (0-255).
(Options: TCP, UDP, Others; Default: TCP)
◆
Service Type
– Packet priority settings based on the following criteria:
■
ToS
– Type of Service level. (Range: 0-15)
■
Precedence
– IP precedence level. (Range: 0-7)
■
DSCP
– DSCP priority level. (Range: 0-63)
◆
Control Code
– Decimal number (representing a bit string) that
specifies flag bits in byte 14 of the TCP header. (Range: 0-63)
◆
Control Code Bit Mask
– Decimal number representing the code bits
to match. (Range: 0-63)
The control bit mask is a decimal number (for an equivalent binary bit
mask) that is applied to the control code. Enter a decimal number,
Содержание LGB6026A
Страница 6: ...ABOUT THIS GUIDE 4...
Страница 40: ...38 CONTENTS...
Страница 60: ...58 SECTION I Getting Started...
Страница 86: ...84 SECTION II Web Configuration Unicast Routing on page 517 Multicast Routing on page 575...
Страница 162: ...160 CHAPTER 5 Interface Configuration VLAN Trunking...
Страница 196: ...194 CHAPTER 6 VLAN Configuration Configuring MAC based VLANs...
Страница 204: ...CHAPTER 7 Address Table Settings Clearing the Dynamic Address Table 202...
Страница 238: ...CHAPTER 11 Class of Service Layer 2 Queue Settings 236...
Страница 254: ...252 CHAPTER 12 Quality of Service Attaching a Policy Map to a Port...
Страница 448: ...446 CHAPTER 16 Multicast Filtering Multicast VLAN Registration...
Страница 470: ...468 CHAPTER 17 IP Configuration Setting the Switch s IP Address IP Version 6...
Страница 576: ...574 CHAPTER 21 Unicast Routing Configuring the Open Shortest Path First Protocol Version 2...
Страница 606: ...604 CHAPTER 22 Multicast Routing Configuring PIMv6 for IPv6...
Страница 620: ...618 CHAPTER 23 Using the Command Line Interface CLI Command Groups...
Страница 672: ...670 CHAPTER 25 System Management Commands Time Range...
Страница 692: ...690 CHAPTER 26 SNMP Commands...
Страница 700: ...698 CHAPTER 27 Remote Monitoring Commands...
Страница 854: ...CHAPTER 34 Port Mirroring Commands Local Port Mirroring Commands 852...
Страница 862: ...860 CHAPTER 36 Address Table Commands...
Страница 958: ...956 CHAPTER 40 Quality of Service Commands...
Страница 1034: ...1032 CHAPTER 42 LLDP Commands...
Страница 1044: ...1042 CHAPTER 43 Domain Name Service Commands...
Страница 1062: ...1060 CHAPTER 44 DHCP Commands DHCP Server...
Страница 1206: ...CHAPTER 47 IP Routing Commands Open Shortest Path First OSPFv3 1204...
Страница 1250: ...1248 SECTION IV Appendices...
Страница 1256: ...1254 APPENDIX A Software Specifications Management Information Bases...
Страница 1278: ...1276 COMMAND LIST...