Management Acls - Lenovo RackSwitch G8264 Application Manual

For lenovo enterprise network operating system 8.4
Hide thumbs Also See for RackSwitch G8264:
Table of Contents

Advertisement

Management ACLs

138
G8264 Application Guide for ENOS 8.4
Management ACLs (MACLs) filter inbound traffic i.e. traffic toward the CPU. 
MACLs are applied switch‐wide. Traffic can be filtered based on the following:
IPv4 source address
IPv4 destination address
IPv4 protocols 
TCP/UDP destination or source port
Lower MACL numbers have higher priority.
Following is an example MACL configuration based on a destination IP address 
and a TCP‐UDP destination port:   
RS G8264(config)# access­control macl 1 ipv4 destination­ip­address 
1.1.1.1 255.255.255.0
RS G8264(config)# access­control macl 1 tcp­udp destination­port 111 
0xffff
RS G8264(config)# access­control macl 1 statistics
RS G8264(config)# access­control macl 1 action permit
RS G8264(config)# access­control macl 1 enable
Use the following command to view the MACL configuration: 
RS G8264(config)# show access­control macl 1
MACL 1 profile
: Enabled
IPv4
- DST IP
: 1.1.1.1/255.255.255.0
TCP/UDP
- DST Port
: 111/0xffff
Action
: Permit
Statistics
: Enabled

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents