Configuring Device Security
Defining Access Control
ESW 500 Series Switches Administration Guide
164
5
Edit IP Based ACL Page
The
Edit IP Based ACL Page
contains the following fields:
•
ACL Name — Displays the user-defined based ACLs.
•
New Rule Priority — Indicates the rule priority, which determines which rule is
matched to a packet on a first-match basis.
•
Protocol — Creates an ACE based on a specific protocol. For a list of available
protocols, see the Protocol field description in the
ACL Page
above.
•
Source Port — Defines the TCP/UDP source port to which the ACE is matched.
This field is active only if 800/6-TCP or 800/17-UDP are selected in the Select
from List drop-down list. The possible field range is 0 - 65535.
•
Destination Port — Defines the TCP/UDP destination port. This field is active
only if 800/6-TCP or 800/17-UDP are selected in the Select from List drop-
down list. The possible field range is 0 - 65535.
•
TCP Flags — Filters packets by TCP EtherChannel. Filtered packets are either
forwarded or dropped. Filtering packets by TCP EtherChannels increases
packet control, which increases network security.
•
ICMP — Indicates if ICMP packets are permitted on the network. The possible
field values are as follows: