Set Up An Ip Acl With Two Rules; Cli: Setting Up An Ip Acl With Two Rules - NETGEAR FSM726E-100NAS Administration Manual

7000 series managed switch administration guide for software version 7.3
Table of Contents

Advertisement

Set up an IP ACL with Two Rules

This section shows you how to set up an IP ACL with two rules, one applicable to TCP traffic and one to
UDP traffic. The content of the two rules is the same. TCP and UDP packets will only be accepted by the
7000 Series Managed Switch if the source and destination stations have IP addresses within the defined sets.
Layer 3 Switch
TCP packet to
192.178.88.3 rejected
Dest. IP not in range
Layer 2 Switch
192.168.77.1
192.168.77.4
Figure 12-1

CLI: Setting up an IP ACL with Two Rules

The following is an example of configuring ACL support on a 7000 Series Managed Switch.
Create ACL 101. Define the first rule: the ACL will permit packets with a match on the specified source IP
address (after the mask has been applied), that are carrying TCP traffic, and that are sent to the specified
destination IP address.
CLI Commands
(Netgear Switch) #config
(Netgear Switch) (Config)#access-list 101 permit tcp 192.168.77.0 0.0.0.255
192.178.77.0 0.0.0.255
Access Control Lists (ACLs)
NETGEAR 7000 Series Managed Switch Administration Guide Version 7.3
TCP packet to
192.178.77.3 accepted
Dest. IP in range
Port 1/0/2
ACL 1
192.168.77.9
v1.0, November 2008
192.168.77.2
12-3

Advertisement

Table of Contents
loading

Table of Contents