DXS-3227, DXS-3227P, DXS-3250 and DXS-3250E EWS User Guide
Defining IP Based ACLs
Access Control Lists (ACL) allow network managers to define classification actions and rules for specific ingress
ports.The device supports up to 1,024 ACLs. Packets entering an ingress port, with an active ACL, are either
admitted or denied entry and the ingress port is disabled. If they are denied entry, the user can disable the port.
For example, a network administrator defines an ACL rule that states, port number 20 can receive TCP packets,
however, if a UDP packet is received, the packet is dropped. ACLs are composed of access control entries (ACEs)
that are made of the filters that determine traffic classifications. The total number of ACEs that can be defined in all
ACLs together is 1024. To define IP based ACLs:
1.
Click Advanced Setup > Security Suite > Access Control > IP Based ACL. The IP Based ACL Page
opens:
Figure 96: IP Based ACL Page
The IP Based ACL Page contains the following fields:
To display IP Based ACLs, select an ACL Name:
•
ACL Name — User-defined ACLs.
•
Remove ACL — Removes the IP based ACLs. The possible field values are:
–
Checked — Removes the selected IP based ACL.
–
Unchecked — Maintains the IP based ACLs.
Page 156