TP-Link T1500 Series User Manual page 602

Hide thumbs Also See for T1500 Series:
Table of Contents

Advertisement

Configuring ACL
S-IP/Mask
D-IP/Mask
IP Protocol
TCP Flag
S-Port / D-Port
DSCP
IP ToS
IP Pre
Time Range
Logging
2) In the Policy section, enable or disable the Mirroring feature for the matched packets.
With this option enabled, choose a destination port to which the packets will be
mirrored.
Enter the source IP address with a mask. A value of 1 in the mask indicates
that the corresponding bit in the address will be matched.
Enter the destination IP address with a mask. A value of 1 in the mask
indicates that the corresponding bit in the address will be matched.
Select a protocol type from the drop-down list. The default is No Limit, which
indicates that packets of all protocols will be matched. You can also select
User-defined to customize the IP protocol.
If TCP protocol is selected, you can configure the TCP Flag to be used for the
rule's matching operations. There are six flags and each has three options,
which are *, 0 and 1. The default is *, which indicates that the flag is not used
for matching operations.
URG: Urgent flag.
ACK: Acknowledge flag.
PSH: Push flag.
RST: Reset flag.
SYN: Synchronize flag.
FIN: Finish flag.
If TCP/UDP is selected as the IP protocol, specify the source and destination
port number with a mask.
Value: Specify the port number.
Mask: Specify the port mask with 4 hexadacimal numbers.
Specify a DSCP value to be matched between 0 and 63. The default is No
Limit.
Specify an IP ToS value to be matched between 0 and 15. The default is No
Limit.
Specify an IP Precedence value to be matched to be matched between 0 and
7. The default is No Limit.
Select a time range during which the rule will take effect. The default
value is No Limit, which means the rule is always in effect. The Time Range
referenced here can be created on the SYSTEM > Time Range page.
Enable Logging function for the ACL rule. Then the times that the rule is
matched will be logged every 5 minutes and a related trap will be generated.
You can refer to Total Matched Counter in the ACL Rules Table to view the
matching times.
ACL Configuration
Configuration Guide
580

Advertisement

Table of Contents
loading

Table of Contents