Controlling the data traffic
8.2
ACL
101
UM Config GRS
Release
8.0
09/2019
8.2
ACL
In this menu you can enter the parameters for the Access Control Lists (ACLs).
The device uses ACLs to filter data packets received on VLANs or on individual or multiple ports.
In a ACL, you specify rules that the device uses to filter data packets. When such a rule applies to
a packet, the device applies the actions specified in the rule to the packet. The available actions
are as follows:
allow (
permit
)
discard (
deny
)
redirect to a certain port (see
Redirection port
field)
mirror (see
Mirror port
field)
The list below contains criteria that you can apply to filter the data packets:
Source or destination address of a packet (MAC)
Source or destination address of a data packet (IPv4)
Source or destination port of a data packet (IPv4)
You can specify the following ACL types:
IP ACLs for VLANs
IP ACLs for ports
MAC ACLs for VLANs
MAC ACLs for ports
When you assign both an IP ACL and MAC ACL to the same interface, the device first uses the IP
ACL to filter the data stream. The device applies the MAC ACL rules only after the packets are
filtered through the IP ACL. The priority of an ACL is independent of the index of a rule.
Within an ACL, the device processes the rules in order. The index of the respective rule determines
the order in which the device filters the data stream. When you assign an ACL to a port or VLAN,
you can specify its priority with the index. The lower the number, the higher the priority. The device
processes the rule with the higher priority first.
If none of the rules specified in an ACL applies to a data packet, then the implicit
deny
rule applies.
As a result, the device drops the received data packets.
Keep in mind that the device directly implements the implicit
deny
rule.
Note:
The number of available ACLs depends on the device. You find more information about the
ACL values in the chapter
.
Note:
You can assign a single ACL to any number of ports or VLANs.
The
ACL
menu contains the following dialogs:
ACL IPv4 Rule
ACL MAC Rule
ACL Assignment
These dialogs provide the following options:
To specify the rules for the various ACL types.
To provide the rules with the required priorities.
To assign the ACLs to ports or VLANs.
Summary of Contents for GREYHOUND GRS1020
Page 8: ......
Page 16: ......
Page 146: ......
Page 232: ......
Page 310: ......
Page 330: ......
Page 338: ...Readers Comments 337 RM GUI GRS Release 8 0 09 2019 ...
Page 339: ......
Page 340: ......
Page 350: ......
Page 354: ......
Page 617: ...Readers Comments 277 UM Config GRS Release 8 0 09 2019 ...
Page 618: ......
Page 619: ......