U
SAGE
G
UIDELINES
Rules within an ACL are checked in the configured order, from
top to bottom. A packet will be accepted as soon as it matches
a permit rule, or dropped as soon as it matches a deny rule. If
no rules match, the frame is accepted.
The maximum number of ACE rules that can be
configured on the switch is 128.
The maximum number of ACE rules that can be bound
to a port is 10.
ACLs provide frame filtering based on any of the
following criteria:
Any frame type (based on MAC address, VLAN ID,
VLAN priority)
Ethernet type (based on Ethernet type value, MAC
address, VLAN ID, VLAN priority)
ARP (based on ARP/RARP type, request/reply,
sender/target IP, hardware address matches
ARP/RARP MAC address, ARP/RARP hardware
address length matches protocol address length,
matches this entry when ARP/RARP hardware
address is equal to Ethernet, matches this entry
when ARP/RARP protocol address space setting is
equal to IP (0x800)
IPv4 frames (based on destination MAC address,
protocol type, TTL, IP fragment, IP option flag,
source/destination IP, VLAN ID, VLAN priority)
W
EB
I
NTERFACE
To configure an Access Control List for a port or a policy:
1
.
Click ACL, Access Control List.
2
.
Click the
button to add a new ACL, or use the other ACL
modification buttons to specify the editing action (i.e., edit, delete, or
moving the relative position of entry in the list).
3.
When editing an entry on the ACE Configuration page, note that the
items displayed depend on various selections, such as Frame Type
and IP Protocol Type. Specify the relevant criteria to be matched for
this rule, and set the actions to take when a rule is matched (such as
Rate Limiter, Port Copy, Logging, and Shutdown).
4
.
Click Apply.
A
CCESS
C
ONTROL
L
IST
C
ONFIGRATION
The Access Control List Configuration page is used to define
filtering rules for an ACL policy, for a specific port, or for all ports.
Rules applied to a port take effect immediately, while those defined
for a policy must be mapped to one or more ports using the ACL
Ports Configuration menu.
.
Содержание LGS-2816C-RPS
Страница 4: ...Revision History Release Date Revision 5 17 01 10 2010 B1...
Страница 5: ...CONTENTS...
Страница 56: ...74 CHAPTER 4 Configuring the Switch Configuring Power Saving the manufacturer...
Страница 69: ......
Страница 117: ...Figure 4 50 Access Control List Configuration...
Страница 146: ...164 CHAPTER 4 Configuring the Switch Configure SNMP Port Port identity of switch Port Number 1 24...
Страница 154: ...172 CHAPTER 4 Configuring the Switch Configure SNMP designated port of the root bridge...
Страница 162: ...180 CHAPTER 4 Configuring the Switch Configure SNMP...
Страница 196: ...346 CHAPTER 8 Commands of CLI Alarm Commandsof CLI...
Страница 199: ...346 CHAPTER 8 Commands of CLI Alarm Commandsof CLI...
Страница 207: ...3 Click Upload Figure 110 Display Firmware Upgrade Screen...
Страница 241: ...349 Interfaces Evolution MIB RFC 2863 IP MIB RFC 2011...