194
EtherWAN Managed Switch Users Guide
ACL (ACCESS CONTROL LIST)
This section applies only to specific models of EtherWAN Switches.
The settings in the ACL feature of the EtherWAN switch can be used to control which
packets are allowed to enter the switch (Packet Filtering), as well as to control the amount of
bandwidth that can be allocated for those packets (Bandwidth Policing).
General Overview
The ACL feature on the EtherWAN Managed Switch filters packets through access control
lists. Any combination of 4 different types of access control lists (called Access Lists) can be
used for this purpose. These four different types of access control lists are explained below:
IP Access List:
This Access List can b
e used to filter IP packets based on the packet’s source IP
address only.
IP Access List (Extended):
This Access List can be used to filter IP packets based on the packet’s source and
destination IP addresses, as well as the packet’s source and destination transport
layer protocol port numbers.
MAC Access List:
This Access List can be used to filter Ethernet packets based on the packet’s source
and destination Ethernet addresse
s as well as the packet’s Ethernet payload protocol
number (EtherType).
Layer 4:
This Access List, if it is used by itself, can only be used to classify IP packets based
only on the IP packet’s source and destination transport layer protocol port numbers.
Use this Access List in conjunction with another type of Access List mentioned
above, if you wish to filter any packet from entry to the switch that did not match the
classification rules from this Access Lists, otherwise all packets that did not match
the classification rules of this Access List will also be allowed entry into the switch.
Note:
You can use any combination of the above four types of Access Lists to
filter packets through the ACL feature, the switch will apply these Access Lists in the
order that they were configured. Since Access List filters allow packets through, there
must be at least one catch all deny rule that can deny all types of packets from entry
to the switch in the very last Access List, This will ensure that only packets specified
in the access list will be allowed.
Содержание EX72129A
Страница 27: ...27 EtherWAN Managed Switch Users Guide Figure 3 System Information...
Страница 31: ...31 EtherWAN Managed Switch Users Guide Figure 5 IP Address...
Страница 55: ...55 EtherWAN Managed Switch Users Guide Figure 13 User Privilege Page...
Страница 63: ...63 EtherWAN Managed Switch Users Guide Figure 16 Remote Logging Page...
Страница 84: ...84 EtherWAN Managed Switch Users Guide Figure 27 Bridging...
Страница 99: ...99 EtherWAN Managed Switch Users Guide Figure 41 PoE Port Setting...
Страница 101: ...101 EtherWAN Managed Switch Users Guide Figure 43 PoE Power Scheduling...
Страница 122: ...122 EtherWAN Managed Switch Users Guide Figure 45 Port Trunking Version 2...
Страница 124: ...124 EtherWAN Managed Switch Users Guide Figure 46 LACP Trunking Version 1...
Страница 126: ...126 EtherWAN Managed Switch Users Guide Figure 47 LACP Trunking Version 2...
Страница 131: ...131 EtherWAN Managed Switch Users Guide Figure 48 STP Ring Global Configuration...
Страница 133: ...133 EtherWAN Managed Switch Users Guide Figure 50 Bridge ID Display...
Страница 135: ...135 EtherWAN Managed Switch Users Guide Figure 51 Max Age Hello Timer Forward Delay...
Страница 144: ...144 EtherWAN Managed Switch Users Guide Figure 55 Enabling MSTP...
Страница 146: ...146 EtherWAN Managed Switch Users Guide Figure 57 Bridge ID Display...
Страница 155: ...155 EtherWAN Managed Switch Users Guide Figure 64 Port Cost Priority...
Страница 163: ...163 EtherWAN Managed Switch Users Guide Figure 67 Ring Settings...
Страница 196: ...196 EtherWAN Managed Switch Users Guide Figure 85 Enabling QoS...
Страница 212: ...212 EtherWAN Managed Switch Users Guide Figure 101 Removing a Policy Map...
Страница 224: ...224 EtherWAN Managed Switch Users Guide Figure 104 SNMP General Settings...
Страница 242: ...242 EtherWAN Managed Switch Users Guide Figure 117 LLDP Global Settings...
Страница 244: ...244 EtherWAN Managed Switch Users Guide Figure 118 LLDP Ports Settings...
Страница 281: ...281 EtherWAN Managed Switch Users Guide Figure 136 Daylight Savings Date Mode...