Configuring ACL
3
Configuration Example for ACL
3.1
Network Requirements
As shown below, a company's internal server group can provide different types of services.
Computers in the Marketing department are connected to the switch via port 1/0/1, and
the internal server group is connected to the switch via port 1/0/2.
Figure 3-1 Network Topology
It is required that:
■ The Marketing department can only access internal server group in the intranet.
■ The Marketing department can only visit http and https websites on the internet.
3.2
Configuration Scheme
To meet the requirements above, you can set up packet filtering by creating an IP ACL and
configuring rules for it.
■ ACL Configuration
Create an IP ACL and configure the following rules for it:
■ Configure a permit rule to match packets with source IP address 10.10.70.0/24, and
destination IP address 10.10.80.0/24. This rule allows the Marketing department to
access internal network servers from intranet.
Downloaded from
ManualsNet.com
search engine
Fa1/0/2
Fa1/0/1
Marketing
IP: 10.10.70.0/24
Configuration Example for ACL
Server Group
IP: 10.10.80.0/24
User Guide
619
Need help?
Do you have a question about the Jetstream T1500G-8T and is the answer not in the manual?