Motorola WiNG 5.7.1 System Reference Manual page 500

Table of Contents

Advertisement

6 - 30 WiNG 5.7.1 Access Point System Reference Guide
Destination
Network Service Alias
Source Port
Destination Port
ICMP Type
ICMP Code
Start VLAN
End VLAN
Protocol
Select the destination IP address or network group configuration used as a basis matching
criteria for this IP ACL rule. Destination options include:
• Any – Indicates any host device in any network.
• Network – Indicates all hosts in a particular network. Subnet mask information has to
be provided for filtering based on network.
• Host – Indicates a single host with a specific IP address.
• Alias – Indicates a collection of IP addresses or hostnames or IP address ranges which
are configured as a single unit. This is for ease of ACL configuration. When selected,
all IP addresses or hostnames or IP address ranges are used in this ACL.
The service alias is a set of configurations consisting of protocol and port mappings. Both
source and destination ports are configurable. Set an alphanumeric service alias
(beginning with a $ character and containing one special character) and include the
protocol as relevant. Selecting either tcp or udp displays an additional set of specific TCP/
UDP source and destinations port options.
If using either tcp or udp as the protocol, define whether the source port for incoming IP
ACL rule application is any, equals or an administrator defined range. If not using tcp or
udp, this setting displays as N/A. This is the data local origination virtual port designated
by the administrator. Selecting equals invokes a spinner control for setting a single
numeric port. Selecting range displays spinner controls for Low and High numeric range
settings. A source port cannot be a destination port.
If using either tcp or udp as the protocol, define whether the destination port for incoming
IP ACL rule application is any, equals or an administrator defined range. If not using tcp or
udp, this setting displays as N/A. This is the data local origination virtual port designated
by the administrator. Selecting equals invokes a spinner control for setting a single
numeric port. Selecting range displays spinner controls for Low and High numeric range
settings.
Selecting ICMP as the protocol for the IP rule displays an additional set of ICMP specific
options for ICMP type and code. The Internet Control Message Protocol (ICMP) uses
messages identified by numeric type. ICMP messages are used for packet flow control or
generated in IP error responses. ICMP errors are directed to the source IP address of the
originating packet. Assign an ICMP type from 1-10.
Selecting ICMP as the protocol for the IP rule displays an additional set of ICMP specific
options for ICMP type and code. Many ICMP types have a corresponding code, helpful for
troubleshooting network issues (0 - Net Unreachable, 1- Host Unreachable, 2 - Protocol
Unreachable etc.).
Select a Start VLAN icon within a table row to set (apply) a start VLAN range for this IP
ACL filter. Start VLAN represents the virtual LAN beginning numeric identifier arriving
packets must adhere to in order to have the IP ACL rules apply.
Select an End VLAN icon within a table row to set (apply) an end VLAN range for this IP
ACL filter. End VLAN represents the virtual LAN end numeric identifier arriving packets
must adhere to in order to have the IP ACL rules apply.
Select the protocol to filter for this ACL. Use the drop down to select from a list of
predefined protocol or use the spinner control to set a particular protocol number.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents