HP 2600 Series Function Manual page 280

Access security guide procurve 2600, 2600-pwr, 2800, 4100, 6108 series
Hide thumbs Also See for 2600 Series:
Table of Contents

Advertisement

Traffic/Security Filters (ProCurve Series 2600/2600-PWR and 2800 Switches)
Using Source-Port Filters
Syntax:
Accounting Workstation 1
Accounting Workstation 2
10-12
Viewing a Named Source-Port Filter
You can list all source-port filters configured in the switch, both named and
unnamed, and their action using the show command below.
show filter source-port
Displays a listing of configured source-port filters, where each filter entry includes
a Filter Name, Port List, and Action:
Filter Name: The filter-name used when a named source-port filter is defined.
Non-named source-port filters are automatically assigned the port or port trunk
number of the source port.
Port List: Lists the port and port trunk destinations using the filter. Named source-
port filters that are not in use display NOT USED.
Action: Lists the ports and port trunks dropped by the filter. If a named source-
port filter has been defined but not configured, this field is blank.
index
[
] For the supplied index (IDX) displays the action taken (Drop or Forward) for each
destination port on the switch.
Sample Configuration for Named Source-Port Filters
A company wants to manage traffic to the Internet and its accounting server
on a 26-port switch. Their network is pictured in Figure 6. Switch port 1
connects to a router that provides connectivity to a WAN and the Internet.
Switch port 7 connects to the accounting server. Two workstations in
accounting are connected to switch ports 10 and 11.
Network Design
1. Accounting Workstations may only send traffic to the Accounting Server.
2. No Internet traffic may be sent to the Accounting Server or Workstations.
3 All other switch ports may only send traffic to Port 1.
Figure 6. Network Configuration for Named Source-Port Filters Example
The company wants to use named source-port filters to direct inbound traffic
only to the Internet while allowing only the two accounting workstations and
the accounting server to communicate with each other, and not the Internet.
Port 1
Port 10
Port 11
Port 7
Router to the
Internet
Accounting Server 1

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents