Destination Port — Indicates the destination port that is matched
packets. Enabled only when TCP or UDP are selected in the
Protocol list.
Flag Set — Indicates the TCP flag to which the packet is mapped.
Source Address — Matches the source IP address to which
packets are addressed to the ACL.
Source Mask — Indicates the source IP address mask.
Destination Address — Matches the destination IP address to
which packets are addressed to the ACL.
Destination Mask — Indicates the destination IP address mask.
DSCP — Matches the packet DSCP value to the ACL. Either the
DSCP value or the IP Precedence value is used to match packets to
ACLs.
IP Precedence — Indicates matching IP-precedence with the
packet IP precedence value.
Action — Indicates the ACL forwarding action. The options are as
follows:
Permit — Forwards packets which meet the ACL criteria.
Deny — Drops packets which meet the ACL criteria.
C
4: M
D
HAPTER
ANAGING
EVICE
S
ECURITY