iES12G
User’s
Manual
UM-iES12G-1.72.2-EN.docx
Pages 117 of 166
© 2020 IS5 COMMUNICATIONS INC. ALL RIGHTS RESERVED
ACL Status
This page shows the ACL status by different ACL users. Each row describes the ACE that is defined. It is
a conflict if a specific ACE is not applied to the hardware due to hardware limitations. The maximum
number of ACEs is 512 on each switch.
Figure 115 - ACL Status
Label
Description
User
Indicates the ACL user.
Ingress Port
Indicates the ingress port to which the ACE will apply.
All
: the ACE will match all ports.
Port n
: the ACE applies to this port number, where n is the number of the switch port.
Frame Type
Indicates the frame type of the ACE.
Any
: The ACE will match any frame type.
EType
: The ACE will match Ethernet Type frames. Note that an Ethernet Type based
ACE will not get matched by IP and ARP frames.
ARP
: The ACE will match ARP/RARP frames.
IPv4
: The ACE will match all IPv4 frames.
IPv4/ICMP:
The ACE will match IPv4 frames with ICMP protocol.
IPv4/UDP
: The ACE will match IPv4 frames with UDP protocol.
IPv4/TCP
: The ACE will match IPv4 frames with TCP protocol.
IPv4/Other
: The ACE will match IPv4 frames, which are not ICMP/UDP/TCP.
IPv6
: The ACE will match all IPv6 standard frames.
Action
Indicates the forwarding action of the ACE.
Permit
: Frames matching the ACE may be forwarded and learned.
Deny
: Frames matching the ACE are dropped.
Rate Limiter
Indicates the rate limiter number of the ACE. The allowed range is 1 to 16. When
Disabled
is displayed, the rate limiter operation is disabled.
Port
Redirect
Frames that match the ACE are copied to the port number specified here. The allowed
range is the same as the switch port number range. Disabled indicates that the port
copy operation is disabled.
Mirror
Specify the mirror operation of this port. The allowed values are:
Enabled
: Frames received on the port are mirrored.
Disabled
: Frames received on the port are not mirrored.
The default value is
Disabled
.
CPU
Forwards packet that matches the specific ACE to CPU.
CPU Once
Forwards first packet that matches the specific ACE to CPU.
Counter
The counter indicates the number of times the ACE was hit by a frame.
Conflict
Indicates the hardware status of the specific ACE. The specific ACE is not applied to the
hardware due to hardware limitations.