HP ProCurve 5300xl Series Management Manual page 382

Advanced traffic
Hide thumbs Also See for ProCurve 5300xl Series:
Table of Contents

Advertisement

Access Control Lists (ACLs) for the Series 5300xl Switches
Configuring and Assigning an ACL
Note: To enable traffic filtering with an ACL assigned to a VLAN such as
the one shown in this example, IP routing must be enabled on the switch.
Otherwise, no ACL filtering occurs.
Figure 9-11. Example of Configuring a Standard ACL To Permit Only Traffic from Specific IP Addresses
9-36
In a situation opposite to the above, suppose that you wanted to deny inbound
IP traffic received on VLAN 20 from 18. 128.93.17 and 18.130.93.25, but permit
all other IP traffic on this VLAN. The next ACL achieves this:
• Permits IP traffic from the
indicated IP address.
Since, for this example,
ACL 50 is a new list, this
command also creates
the ACL.
• Permits IP traffic from the
indicated IP address.
• The deny any that the
switch implicitly includes
in all standard ACLs
denies IP packets from IP
sources not included in
the above three
commands.
Show config lists any ACLs and ACL
assignments configured in the startup­
config.
ACL "50" is listed in the switch configuration.
ACL "50" is assigned to filter inbound traffic
on VLAN 10.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents