Introduction To Ipv4 Acl; Ipv4 Acl Classification - 3Com 4500G Family Configuration Manual

24/48 port
Hide thumbs Also See for 4500G Family:
Table of Contents

Advertisement

Hardware-based application: An ACL is assigned to a piece of hardware. For example, an ACL is
applied to an Ethernet interface or VLAN interface for packet filtering or is referenced by a QoS
policy for traffic classification. Note that when an ACL is referenced to implement QoS, the actions
defined in the ACL rules, deny or permit, do not take effect; actions to be taken on packets
matching the ACL depend on the traffic behavior definition in QoS. For details about traffic behavior,
refer to the QoS part in QoS Volume.
Software-based application: An ACL is referenced by a piece of upper layer software. For example,
an ACL can be referenced to configure login user control behavior, thus controlling Telnet, SNMP
and Web users. Note that when an ACL is reference by the upper layer software, actions to be
taken on packets matching the ACL depend on those defined by the ACL rules. For details about
login user control, refer to the part about login configuration in System Volume.
When an ACL is assigned to a piece of hardware and referenced by a QoS policy for traffic
classification, the switch does not take action according to the traffic behavior definition on a packet
that does not match the ACL.
When an ACL is referenced by a piece of software to control Telnet, SNMP, and Web login users,
the switch denies all packets that do not match the ACL.
For details of ACL application for packet filtering, refer to

Introduction to IPv4 ACL

This section covers these topics:

IPv4 ACL Classification

IPv4 ACL Naming
IPv4 ACL Match Order
IPv4 ACL Step
Effective Period of an IPv4 ACL
IP Fragments Filtering with IPv4 ACL
IPv4 ACL Classification
IPv4 ACLs, identified by ACL numbers, fall into three categories, as shown in
Table 1-1 IPv4 ACL categories
Category
Basic IPv4 ACL
Advanced IPv4 ACL
Ethernet frame header
ACL
ACL number
2000 to 2999
Source IP address
Source IP address, destination IP address,
3000 to 3999
protocol carried over IP, and other Layer 3 or
Layer 4 protocol header information
Layer 2 protocol header fields such as source
4000 to 4999
MAC address, destination MAC address, 802.1p
priority, and link layer protocol type
1-2
ACL Application for Packet
Table
1-1.
Matching criteria
Filtering.

Hide quick links:

Advertisement

Chapters

Table of Contents
loading

Table of Contents