Using Acls Alone To Configure Access Control - HP ProCurve Secure Router 7203 dl Advanced Management And Configuration Manual

Secure router
Hide thumbs Also See for ProCurve Secure Router 7203 dl:
Table of Contents

Advertisement

Access Control
Advantages
Mechanism
ACLs
• easier to configure
• filter both incoming and outgoing traffic
ACPs
• provide more flexibility
• allow you to NAT traffic
N o t e
ACPs also allow you to perform certain actions on traffic that ACLs do not.
For example, you must use an ACP to configure Network Address Translation
(NAT) on the ProCurve Secure Router. (For more information about NAT, see
Chapter 6: Configuring Network Address Translation.)
Table 5-2 lists the main differences between ACLs and ACPs.
Table 5-2.
Comparing ACLs and ACPs
on an interface
– allow you to apply an unlimited number of
ACLs to an interface
The remainder of this chapter is divided into four main sections:
using ACLs alone to configure access controls on router interfaces
using ACPs to configure access controls on router interfaces
viewing ACLs and ACPs
troubleshooting ACLs and ACPs
Using ACLs Alone to Configure Access
Control
When you use ACLs alone to configure access controls on router interfaces,
you must complete two main steps:
1.
Configure the ACL.
2.
Apply the ACL directly to an interface.
You do not have to enable the ProCurve Secure Router OS firewall if you use
ACLs alone to configure access controls. If you use ACPs, you must enable
the firewall.
Applying Access Control to Router Interfaces

Using ACLs Alone to Configure Access Control

Disadvantages
• support only one ACL to filter the incoming
traffic on an interface and one ACL to filter
the outgoing traffic on an interface
• can be more difficult to understand and
configure
5-5

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve secure router 7102 dl

Table of Contents