234
4.10 Access Control Lists
ACL is an acronym for Access Control List. It is the list table of ACEs, containing access control entries that specify individual users
or groups permitted or denied to specific traffic objects, such as a process or a program.
Each accessible traffic object contains an identifier to its ACL. The privileges determine whether there are specific traffic object
access rights.
ACL implementations can be quite complex, for example, when the ACEs are prioritized for the various situation. In networking, the
ACL refers to a list of service ports or network services that are available on a host or server, each with a list of hosts or servers
permitted or denied to use the service. ACL can generally be configured to control inbound traffic, and in this context, they are similar
to firewalls.
ACE
is an acronym for
Access Control Entry
. It describes access permission associated with a particular ACE ID.
There are three ACE frame types (
Ethernet Type
,
ARP
, and
IPv4
) and two ACE actions (
permit
and
deny
). The ACE also contains
many detailed, different parameter options that are available for individual application.
4.10.1 Access Control List Status
This Page shows the ACL status by different ACL users. Each row describes the ACE that is defined. It is a conflict if a specific ACE
is not applied to the hardware due to hardware limitations. The maximum number of ACEs is
512
on each switch. The Voice VLAN
OUI Table screen in
Figure 4-10-1
appears.
Figure 4-10-1:
ACL Status Page Screenshot
The Page includes the following fields:
Object
Description
User
Indicates the ACL user.
Ingress Port
Indicates the ingress port of the ACE. Possible values are:
■
All
: The ACE will match all ingress port.
■
Port
: The ACE will match a specific ingress port.
Frame Type
Indicates the frame type of the ACE. Possible values are:
■
Any
: The ACE will match any frame type.
Содержание NS4702-24P-4S-4X
Страница 1: ...NS4702 24P 4S 4X User Manual P N 1072829 REV 00 01 ISS 14JUL14 ...
Страница 23: ...23 Storage Temperature 10 70 degrees C Relative Humidity 5 95 non condensing ...
Страница 164: ...164 Figure 4 8 2 Multicast Flooding ...
Страница 183: ...183 Figure 4 8 14 IGMP Snooping VLAN Configuration Page Screenshot ...
Страница 189: ...189 Figure 4 8 17 MLD Snooping Groups Information Page Screenshot ...
Страница 203: ...203 Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values ...
Страница 208: ...208 Figure 4 9 6 QoS Egress Port Tag Remarking Page Screenshot ...
Страница 218: ...218 Deletes the QCE The lowest plus sign adds a new entry at the bottom of the list of QCL ...
Страница 229: ...229 Figure 4 9 18 Voice VLAN Configuration Page Screenshot ...
Страница 252: ...252 Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values ...
Страница 291: ...291 measurement is 100 ms A value of 0 ms indicates that there hasn t been round trip communication with the server yet ...
Страница 299: ...299 Figure 4 11 17 Add User Properties Screen Figure 4 11 18 Add User Properties Screen ...
Страница 336: ...336 Figure 4 14 2 LLDPMED Configuration Page Screenshot ...
Страница 357: ...357 Figure 4 15 4 VeriPHY Cable Diagnostics Page Screenshot ...
Страница 367: ...367 ...
Страница 375: ...375 Figure 4 16 10 Port Power Consumption Screenshot Buttons Click to refresh the page immediately ...
Страница 391: ...391 ...