166
3-23. ACL
The access control list (ACL) is probably the most commonly used object in
the IOS. It is used for packet filtering but also for selecting types of traffic to be
analyzed, forwarded, or influenced in some way.
The ACLs are divided into EtherTypes. IPv4, ARP protocol, MAC and VLAN
parameters etc. Here we will just go over the standard and extended access lists for
TCP/IP. As you create ACEs for ingress classification, you can assign a policy for
each port, the policy number is 1-8, however, each policy can be applied to any port.
This makes it very easy to determine what type of ACL policy you will be working
with.
Note: The High-ACL List rule: When you set on the switch, it will apply the
ACL rules with the top priority. The High-ACL rules will give the top
priority against the other access control rules.
The Low-ACL List rule: When you set on the switch, it will apply the
ACL rules which are lower than some specific packet filtering rules ( e.g.
MAC filtering, IP-MAC-Port Binding).
Function name:
High-ACL List / Low-ACL List
Function description:
The switch ACL function support up to 128 High Access Control List (High-
ACL) and 256 Low Access Control List (Low-ACL List), using the shared
128 High ACEs and 256 Low ACEs for ingress classification. You can create
an ACE and assign this ACE for each port with <Any> or assign this ACE for a
policy or assign this ACE for a port. There are 7 priorities, each port can select
one of policy, then decides which of the following actions would take according
to the packet’s IPv4, EtherType, ARP Protocol, MAC Parameters and VLAN
parameters:
Fig. 3-87
Содержание FGP-1072
Страница 1: ...i FGP 1072 8FE PoE 2GE Combo SFP L2 Managed Switch User Manual Ver 1 00 1206...
Страница 32: ...32 Fig 2 15 Office Network Connection Fig 2 14 Peer to peer Network Connection...
Страница 45: ...45 Fig 3 5...
Страница 133: ...133 Same as mentioned in Port Config Restricted Tcn Same as mentioned in Port Config...
Страница 173: ...173 Fig 3 85 Fig 3 86 Fig 3 87...
Страница 175: ...175 Fig 3 91 Rate Meter To set rate meter function with the bandwidth parameter The range is 64 to 1024000kbps Fig 3 92...
Страница 193: ...193 Managed Switch FGP 1072 Login admin Password FGP 1072 Fig 4 1...