Configuring Device Security
Defining ACLs
Page 157
IP Based ACL Table
In addition to the fields above, the following fields appear in the IP Based ACL Table:
•
ACE Priority
— ACE priority that determines which ACE is matched to a packet based on a first-match basis.
•
Protocol
— Enables creating an ACE based on a specific protocol. The possible field values are:
–
ICMP
—
Internet Control Message Protoco
l (ICMP). The ICMP allows the gateway or destination host to
communicate with the source host. For example, to report a processing error.
–
IGMP
—
Internet Group Management Protocol
(IGMP). Allows hosts to notify their local switch or router
that they want to receive transmissions assigned to a specific multicast group.
–
IP
—
Internet Protocol
(IP). Specifies the format of packets and their addressing method. IP addresses
packets and forwards the packets to the correct port.
–
TCP
—
Transmission Control Protocol
(TCP). Enables two hosts to communicate and exchange data
streams. TCP guarantees packet delivery, and guarantees packets are transmitted and received in the
order the are sent.
–
EGP
—
Exterior Gateway Protocol
(EGP). Permits exchanging routing information between two
neighboring gateway hosts in an autonomous systems network.
–
IGP
—
Interior Gateway Protocol
(IGP). Allows for routing information exchange between gateways in an
autonomous network.
–
UDP
—
User Datagram Protocol
(UDP). Communication protocol that transmits packets but does not
guarantee their delivery.
–
HMP
—
Host Mapping Protocol
(HMP). Collects network information from various networks hosts. HMP
monitors hosts spread over the internet as well as hosts in a single network.
–
RDP
—
Remote Desktop Protocol
(RDP). Allows a clients to communicate with the Terminal Server over
the network.
–
IDRP
— Matches the packet to the
Inter-Domain Routing Protocol
(IDRP).
–
RVSP
— Matches the packet to the
ReSerVation Protocol
(RSVP).
–
AH
—
Authentication Header
(AH). Provides source host authentication and data integrity.
–
EIGRP
—
Enhanced Interior Gateway Routing Protocol
(EIGRP). Provides fast convergence, support for
variable-length subnet mask, and supports multiple network layer protocols.
–
OSPF
— The
Open Shortest Path First
(OSPF) protocol is a link-state, hierarchical interior gateway
protocol (IGP) for network routing Layer Two (2) Tunneling Protocol, an extension to the PPP protocol
that enables ISPs to operate Virtual Private Networks (VPNs).
–
IPIP
—
IP over IP
(IPIP). Encapsulates IP packets to create tunnels between two routers. This ensure
that IPIP tunnel appears as a single interface, rather than several separate interfaces. IPIP enables
tunnel intranets occur the internet, and provides an alternative to source routing.
–
PIM
— Matches the packet to
Protocol Independent Multicast
(PIM).
–
L2TP
— Matches the packet to
Internet Protocol
(L2IP).
–
ISIS
—
Intermediate System - Intermediate System
(ISIS). Distributes IP routing information throughout
a single Autonomous System in IP networks
–
Any
— Matches the protocol to any protocol.
–
Protocol ID To Match
— Adds user-defined protocols by which packets are matched to the ACE. Each
protocol has a specific protocol number which is unique. The possible field range is 0-255.
•
Flag Set
— Sets the indicated TCP flag that can be triggered.
•
ICMP Type
— Specifies an ICMP message type for filtering ICMP packets.
•
ICMP Code
— Specifies an ICMP message code for filtering ICMP packets. ICMP packets that are filtered by
ICMP message type. It can also be filtered by the ICMP message code.
Содержание DXS-3227 - xStack Switch - Stackable
Страница 327: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 326 ...
Страница 397: ...Technical Support Contacting D Link Technical Support Page 395 ...
Страница 398: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 396 ...
Страница 399: ...Technical Support Contacting D Link Technical Support Page 397 ...
Страница 400: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 398 ...
Страница 401: ...Technical Support Contacting D Link Technical Support Page 399 ...
Страница 402: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 400 ...
Страница 403: ...Technical Support Contacting D Link Technical Support Page 401 ...
Страница 404: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 402 ...
Страница 405: ...Technical Support Contacting D Link Technical Support Page 403 ...
Страница 406: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 404 ...
Страница 407: ...Technical Support Contacting D Link Technical Support Page 405 ...
Страница 408: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 406 ...
Страница 409: ...Technical Support Contacting D Link Technical Support Page 407 ...
Страница 410: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 408 ...
Страница 411: ...Technical Support Contacting D Link Technical Support Page 409 ...
Страница 412: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 410 ...
Страница 413: ...Technical Support Contacting D Link Technical Support Page 411 ...
Страница 414: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 412 ...
Страница 415: ...Technical Support Contacting D Link Technical Support Page 413 ...
Страница 416: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 414 ...
Страница 417: ...Technical Support Contacting D Link Technical Support Page 415 ...
Страница 418: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 416 ...
Страница 419: ...Technical Support Contacting D Link Technical Support Page 417 ...
Страница 420: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 418 ...
Страница 421: ...Technical Support Contacting D Link Technical Support Page 419 ...
Страница 422: ...DXS 3227 DXS 3227P DXS 3250 and DXS 3250E EWS User Guide Page 420 ...