Chapter 53 Vlan-Acl Configuration; Introduction To Vlan-Acl; Vlan-Acl Configuration Task List - Planet WGSW-52040 Configuration Manual

48-port 10/100/1000base-t + 4-port 100/1000x sfp managed switch
Hide thumbs Also See for WGSW-52040:
Table of Contents

Advertisement

Chapter 53 VLAN-ACL Configuration

53.1 Introduction to VLAN-ACL

The user can configure ACL policy to VLAN to implement the accessing control of all ports in VLAN, and
VLAN-ACL enables the user to expediently manage the network. The user only needs to configure ACL policy
in VLAN, the corresponding ACL action can takes effect on all member ports of VLAN, but it does not need to
solely configure on each member port.
When VLAN ACL and Port ACL are configured at the same time, it will first match Port ACL due to Port ACL
priority is higher than VLAN-ACL.
VLAN-ACL ingress direction can implement the filtering of the packets, the packets match the specific rules
can be allowed or denied. ACL can support IP ACL, MAC ACL, MAC-IP ACL, IPv6 ACL. Ingress direction of
VLAN can bind four kinds of ACL at the same time.

53.2 VLAN-ACL Configuration Task List

1. Configure VLAN-ACL of IP type
2. Configure VLAN-ACL of MAC type
3. Configure VLAN-ACL of MAC-IP
4. Configure VLAN-ACL of IPv6 type
5. Show configuration and statistic information of VLAN-ACL
6. Clear statistic information of VLAN-ACL
1. Configure VLAN-ACL of IP type
Command
Global mode
vacl ip access-group {<1-299> | WORD} {in
| out} [traffic-statistic] vlan WORD
no vacl ip access-group {<1-299> |
WORD} {in | out} vlan WORD
2. Configure VLAN-ACL of MAC type
Command
Explanation
Configure or delete IP VLAN-ACL.
(Egress filtering is not supported by
switch.)
Explanation
53-1

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents