Cisco ESW 500 Administration Manual page 171

Cisco systems switch user manual
Hide thumbs Also See for ESW 500:
Table of Contents

Advertisement

Configuring Device Security
Defining Access Control
STEP 2
ESW 500 Series Switches Administration Guide
-
IP Address — Displays the source port IP address to which packets are
addressed to the ACE.
-
Wildcard Mask — Displays the source IP address wildcard mask.
Wildcard masks specify which bits are used and which bits are ignored.
A wild card mask of 255.255.255.255 indicates that no bit is important. A
wildcard of 0.0.0.0 indicates that all the bits are important. For example, if
the source IP address 149.36. 1 84. 1 98 and the wildcard mask is
255.36. 1 84.00, the first eight bits of the IP address are ignored, while the
last eight bits are used.
Destination
-
IP Address — Displays the destination IP address to which packets are
addressed to the ACE.
-
Wildcard Mask — Displays the destination IP address wildcard mask.
DCSP — Matches the packets DSCP value.
IP Prec — Matches the packet IP Precedence value to the ACE. Either the
DSCP value or the IP Precedence value is used to match packets to ACLs. The
possible field range is 0-7.
Action — Indicates the action assigned to the packet matching the ACL.
Packets are forwarded or dropped. In addition, the port can be shut down, a
trap can be sent to the network administrator, or packet is assigned rate
limiting restrictions for forwarding. The options are as follows:
-
Permit
— Forwards packets which meet the ACL criteria.
-
Deny
— Drops packets which meet the ACL criteria.
-
Shutdown
— Drops packet that meets the ACL criteria, and disables the
port to which the packet was addressed. Ports are reactivated from the
Port Management
-
Match IP Precedence —
ACE. Either the DSCP value or the IP Precedence value is used to match
packets to ACLs. The possible field range is 0-7.
Delete ACL button — To remove an ACL, click the Delete ACL button.
Delete Rule button — To remove an ACE rule, click the rule's checkbox and
click the Delete Rule button.
Click the Add ACL button. The
page.
Matches the packet IP Precedence value to the
Add IP Based ACL Page
5
opens:
160

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents