XS26GS Managed Optical Ethernet Switch User Manual
29
collection of permit and deny conditions that apply to packets. When a packet is received
on an interface, the switch compares the fields in the packet against any applied ACLs to
verify that the packet has the required permissions to be forwarded, based on the
criteria specified in the access lists.
There are three types of ACL:
Basic IP ACL
: filtering packets only based on source IP address.
Advance IP ACL
: filtering packets based on source IP address, destination IP address,
IP protocol type, and more.
L2 ACL
: filtering packets based on source MAC address, destination MAC addresses,
802.1p priority, and L2 protocol type.
2.9.1
Management ACL
In order to flexibly configure ACL rule, the ACL ID is divided into three segments: 1-10
for Basic IP ACL, 11-20 for Advanced IP ACL, and 21-30 for L2 ACL.
ACL Rule
page sets
different ACL rules based on the range of ACL ID.
The bottom part of this page lists all configured ACL IDs. Parameter
Rules
shows the
number of rules that has already been configured for this ACL ID.
2.9.2
ACL Rule
2.9.2.1
Basic IP ACL
This page sets Basic IP ACL rule s. Up to 10 rules per ACL ID can be set; each rule ID can only
be used once. All parameters,
Rule ACL ID
,
Source IP
, and
IP Mask,
must be set, and
the
Action
can be
Permit
or
Deny.
Permit:
permit the access of rule matched IP
.
Deny:
Deny the access of rule matched IP
.
The bottom part of this page lists all configured Basic IP ACL rules.