Access Control Lists
3-81
3
Configuring ACL Masks
You must specify optional masks that control the order in which ACL rules are
checked. The switch includes two system default masks that pass/filter packets
matching the permit/deny rules specified in an ingress ACL. You can also configure
up to seven user-defined masks for an ingress or egress ACL. A mask must be
bound exclusively to one of the basic ACL types (i.e., Ingress IP ACL, Egress IP
ACL, Ingress MAC ACL or Egress MAC ACL), but a mask can be bound to up to four
ACLs of the same type.
Command Usage
• Up to seven entries can be assigned to an ACL mask.
• Packets crossing a port are checked against all the rules in the ACL until a match
is found. The order in which these packets are checked is determined by the mask,
and not the order in which the ACL rules are entered.
• First create the required ACLs and the ingress or egress masks before mapping an
ACL to an interface.
• You must configure a mask for an ACL rule before you can bind it to a port or set
the queue or frame priorities associated with the rule.
Specifying the Mask Type
Use the ACL Mask Configuration page to edit the mask for the Ingress IP ACL,
Egress IP ACL, Ingress MAC ACL or Egress MAC ACL.
Web
– Click Security, ACL, ACL Mask Configuration. Click Edit for one of the basic
mask types to open the configuration page.
Figure 3-50. Choosing ACL Types
Summary of Contents for Matrix-V V2H124-24P
Page 2: ......
Page 8: ...Notice vi...
Page 22: ...Contents xx...
Page 26: ...Tables xxiv...
Page 30: ...Figures xxviii...
Page 38: ...Introduction 1 8 1...
Page 50: ...Initial Configuration 2 12 2...
Page 159: ...Port Configuration 3 109 3 Figure 3 66 Displaying Etherlike and RMON Statistics...
Page 234: ...Configuring the Switch 3 184 3...
Page 480: ...Command Line Interface 4 246 4...
Page 496: ...Index Index 4...
Page 497: ......
Page 498: ...Part 150200039400A FW 2 5 2 0 E012005 R02 ES3526G E072000 R04...