HP E3800-24G-PoE+-2SFP+ Access Security Manual page 382

Switch software
Hide thumbs Also See for E3800-24G-PoE+-2SFP+:
Table of Contents

Advertisement

IPv4 Access Control Lists (ACLs)
Introduction
Notes
10-2
Feature
Configure an ACL from a TFTP Server
Enable ACL Logging
IPv4 filtering with ACLs can help improve network performance and restrict
network use by creating policies for:
Switch Management Access: Permits or denies in-band manage-
ment access. This includes limiting and/or preventing the use of
designated protocols that run on top of IPv4, such as TCP, UDP, IGMP,
ICMP, and others. Also included are the use of precedence and ToS
criteria, and control for application transactions based on source and
destination IPv4 addresses and transport layer port numbers.
Application Access Security: Eliminates unwanted traffic in a path
by filtering IPv4 packets where they enter or leave the switch on
specific VLAN interfaces.
IPv4 ACLs can filter traffic to or from a host, a group of hosts, or entire subnets.
IPv4 ACLs can enhance network security by blocking selected traffic, and can
serve as part of your network security program. However, because ACLs do
not provide user or device authentication, or protection from malicious
manipulation of data carried in IPv4 packet transmissions, they should not
be relied upon for a complete security solution.
IPv4 ACLs on the switches covered by this manual do not filter non-IPv4 traffic
such as IPv6, AppleTalk, and IPX packets.
Default
CLI
n/a
10-107
n/a
10-114

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents