Cisco SX350 Series Administration Manual page 600

Managed switches
Hide thumbs Also See for SX350 Series:
Table of Contents

Advertisement

Access Control
IPv6-Based ACL Creation
Cisco Sx350, SG350X, SG350XG, Sx550X & SG550XG Series Managed Switches, Firmware Release 2.2.5.x
Destination IP Address Value—Enter the IP address to which the destination MAC
address is matched and its mask (if relevant).
Destination IP Prefix Length—Enter the prefix length of the IP address.
Source Port—Select one of the following:
-
Any—Match to all source ports.
-
Single from list—Select a single TCP/UDP source port to which packets are
matched. This field is active only if 800/6-TCP or 800/17-UDP is selected in the IP
Protocol drop-down menu.
-
Single by number—Enter a single TCP/UDP source port to which packets are
matched. This field is active only if 800/6-TCP or 800/17-UDP is selected in the IP
Protocol drop-down menu.
-
Range—Select a range of TCP/UDP source ports to which the packet is matched.
Destination Port—Select one of the available values. They are the same as for the
Source Port field described above.
You must specify the IPv6 protocol for the ACL before you can configure the
NOTE
source and/or destination port.
TCP Flags—Select one or more TCP flags with which to filter packets. Filtered packets
are either forwarded or dropped. Filtering packets by TCP flags increases packet
control, which increases network security.
-
Set—Match if the flag is SET.
-
Unset—Match if the flag is Not SET.
-
Don't care—Ignore the TCP flag.
Type of Service—The service type of the IP packet.
-
Any—Any service type
-
DSCP to Match—Differentiated Serves Code Point (DSCP) to match
-
IP Precedence to match—IP precedence is a model of TOS (type of service) that the
network uses to help provide the appropriate QoS commitments. This model uses
the 3 most significant bits of the service type byte in the IP header, as described in
RFC 791 and RFC 1349.
ICMP—If the ACL is based on ICMP, select the ICMP message type that is used for
filtering purposes. Either select the message type by name or enter the message type
number. If all message types are accepted, select Any.
26
584

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents