Netgear FS728TLP Web Management User Guide - Page 201

Settings, Description, Permit, False, Enable, Disable, the Match Every

Page 201 highlights

ProSAFE FS526Tv2, FS726Tv2, and FS728TLP Smart Switches 3. Configure the settings as described in the following table: Settings Description ID (1 to 10) Specify an ID for the rule. Enter a number from 1 to 10. You can create up to 10 rules for a single MAC ACL. Action Specify the action for the rule: • Permit. Packets that meet the ACL criteria are forwarded. • Deny. Packets that meet the ACL criteria are dropped. Assign Queue Redirect Interface Specify the egress queue that is used to handle all packets that match the ACL rule. From the menu, select the queue ID (0, 1, 2, 3, 4, 5, 6, or 7). This setting can override the existing queue ID for a packet. Specify the egress port on which the matching traffic stream is This menu is forced, bypassing any forwarding action that the smart switch available only if normally takes. the selection from From the menu, select a port. the Match Every menu is False. Match Every CoS Specify whether all packets need to match the rule: • True. All packets must match the rule. Other rules are not considered, and the fields and menus to the right of the Match Every menu are masked out, except for the CPU Notification Mode menu. • False. Not all packets need to match the rule. Other rules are also considered. Specify the 802.1p CoS marking that needs to match the CoS marking in a packet. From the menu, select the priority value (0, 1, 2, 3, 4, 5, 6, or 7). This menu is available only if the selection from the Match Every menu is False. CPU Notification Mode Note: This menu applies only to model 728TLP. Specify whether PoE power is turned off to a port if the ACL rejects the traffic from the port: • Enable. PoE power to the port is turned off. To reestablish PoE power to the port, turn on the PoE power manually (see Configure the PoE Ports on page 75). • Disable. PoE power to the port is not turned off. This menu is available only if the selection from the Action menu is Deny. Destination MAC Specify the MAC address of the destination device that needs to be compared against the destination MAC address in a packet. Enter a MAC address in the xx:xx:xx:xx:xx:xx format. This field is available only if the selection from the Match Every menu is False. Manage Access Control Lists 201

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335

Manage Access Control Lists
201
ProSAFE FS526Tv2, FS726Tv2, and FS728TLP Smart Switches
3.
Configure the settings as described in the following table:
Settings
Description
ID (1 to 10)
Specify an ID for the rule.
Enter a number from 1 to 10. You can create up to 10 rules for a single MAC ACL.
Action
Specify the action for the rule:
Permit
. Packets that meet the ACL criteria are forwarded.
Deny
. Packets that meet the ACL criteria are dropped.
Assign Queue
Specify the egress queue that is used to handle all packets that match the ACL
rule.
From the menu, select the queue ID (
0
,
1
,
2
,
3
,
4
,
5
,
6
, or
7
). This setting can
override the existing queue ID for a packet.
Redirect Interface
Specify the egress port on which the matching traffic stream is
forced, bypassing any forwarding action that the smart switch
normally takes.
From the menu, select a port.
This menu is
available only if
the selection from
the Match Every
menu is False.
Match Every
Specify whether all packets need to match the rule:
True
. All packets must match the rule. Other rules are not considered, and the
fields and menus to the right of the Match Every menu are masked out,
except for the CPU Notification Mode menu.
False
. Not all packets need to match the rule. Other rules are also
considered.
CoS
Specify the 802.1p CoS marking that needs to match the CoS
marking in a packet.
From the menu, select the priority value (
0
,
1
,
2
,
3
,
4
,
5
,
6
, or
7
).
This menu is
available only if
the selection from
the Match Every
menu is False.
CPU Notification Mode
Note:
This menu
applies only to model
728TLP.
Specify whether PoE power is turned off to a port if the ACL
rejects the traffic from the port:
Enable
. PoE power to the port is turned off. To
reestablish PoE power to the port, turn on the PoE power
manually (see
Configure the PoE Ports
on page
75).
Disable
. PoE power to the port is not turned off.
This menu is
available only if
the selection from
the Action menu
is Deny.
Destination MAC
Specify the MAC address of the destination device that needs
to be compared against the destination MAC address in a
packet.
Enter a MAC address in the xx:xx:xx:xx:xx:xx format.
This field is
available only if
the selection from
the Match Every
menu is False.