TRENDnet TI-BG62i User Manual page 131

6-port industrial gigabit l2+ managed poe++ din-rail switch
Table of Contents

Advertisement

TRENDnet User's Guide
Access Control List (ACL)
L2 Access control list (ACL) is a list of permissions attached to an object. The list
specifies who or what is allowed to access the object and what operations are allowed
to be performed on the object.
L2 ACL function allows user to configure a few rules to reject packets from the specific
ingress ports or all ports. These rules will check the packets' source MAC address and
destination MAC address. If packets match these rules, the system will do the actions
"deny". "deny" means rejecting these packets.
The Action Resolution engine collects the information (action and metering results)
from the hit entries: if more than one rule matches, the actions and meter/counters are
taken from the policy associated with the matched rule with highest priority.
L2 ACL Support:
1. Filter a specific source MAC address.
Command: source mac host MACADDR
2. Filter a specific destination MAC address.
Command: destination mac host MACADDR
3. Filter a range of source MAC address.
Command: source mac MACADDR MACADDR
The second MACADDR is a mask, for example: ffff.ffff.0000
4. Filter a range of destination MAC address.
Command: destination mac MACADDR MACADDR
The second MACADDR is a mask, for example: ffff.ffff.0000
L3 ACL Support:
1. Filter a specific source IP address.
Command: source ip host IPADDR
2. Filter a specific destination IP address.
Command: destination ip host IPADDR
3. Filter a range of source IP address.
© Copyright 2023 TRENDnet. All Rights Reserved.
Command: source ip IPADDR IPADDR
The second IPADDR is a mask, for example: 255.255.0.0
4. Filter a range of destination IP address.
Command: destination ip IPADDR IPADDR
L4 ACL Support:
1. Filter a UDP/TCP source port.
2. Filter a UDP/TCP destination port.
Default Settings:
Maximum profile:
Maximum profile name length:
Notices
The ACL name should be a combination of alphanumeric characters.
CLI Configuration
Node
Command
enable
show access-list
configure
access-list STRING iptype
(ipv4|ipv6)
configure
no access-list STRING
acl
show
TI-BG62i
64.
16.
Description
This command displays all of the
access control profiles.
This command creates a new access
control profile.
Where the STRING is the profile
name. And you can specify the
type, ipv4 or ipv6.
This command deletes an access
control profile.
This command displays the current
access control profile.
129

Advertisement

Table of Contents
loading

Table of Contents