4.6.2 IP Based ACL Configure Sample
This section shows how to build a IP Based ACL and apply to specify interface.
■
Sample Case: Deny IP packets to specific Class C network
Purpose:
Verify a positive and negative matches to network IP address with a Class C (24 bit mask) , no matter the rule defined as
permit or deny.
1.
Any packets pass through the switch will be dropped – if the Destination IP Addresses match specific Class C.
2.
Any packets pass through the switch will be forwarded – if the Destination IP Addresses not match specific Class C.
Case Design:
Action
Match
Source IP Address
Destination IP Address
Applied Interface
Device Connection and Configuration:
User's Manual of WGSW-24020/WGSW-48040
DENY
IP
Any
Class C
172.16.0.0 / 255.255.255.0
Interface g1
-60-