Netgear FS728TLP Web Management User Guide - Page 211

Change a Rule for a Basic IP ACL, Security > ACL > Advanced > IP Rules, Apply

Page 211 highlights

ProSAFE FS526Tv2, FS726Tv2, and FS728TLP Smart Switches Settings Description Match Every Specify whether all packets need to match the rule: • True. All packets must match the rule. Other rules are not considered, and the fields and menus to the right of the Match Every menu are disabled, except for the CPU Notification Mode menu. • False. Not all packets need to match the rule. Other rules are also considered. CPU Notification Mode Note: This menu applies only to model 728TLP. Specify whether PoE power is turned off to a port if the ACL rejects the traffic from the port: • Enable. PoE power to the port is turned off. To reestablish PoE power to the port, turn on the PoE power manually (see Configure the PoE Ports on page 75). • Disable. PoE power to the port is not turned off. This menu is available only if the selection from the Action menu is Deny. Source IP Address Specify the IP address of the source device that needs to be compared against the address information in a packet. Enter an IP address in the dotted-decimal notation. Source IP Mask Specify the source IP subnet mask that is associated with the source IP address. The IP subnet mask specifies which bits in the source IP address need to be compared against the address information in a packet. This field is required when you configure a source IP address. Note: A subnet mask of 255.255.255.255 indicates that none of the bits are important. A subnet mask of 0.0.0.0 indicates that all of the bits are important. For example, if you apply source IP mask 0.0.0.255 to IP address 192.168.0.10, the ACL applies to IP addresses 192.168.0.0 through 192.168.0.255. These fields are available only if the selection from the Match Every menu is False. 4. Click the Add button. The settings are saved, and the IP rule is added to the Basic ACL Rule Table. Change a Rule for a Basic IP ACL  To change a rule for a basic IP ACL: 1. Select Security > ACL > Advanced > IP Rules. The IP Rules screen displays. 2. From the ACL ID menu, select the ACL ID for which you want to change a rule. 3. Select the check box to the left of the rule for which you want to change the settings. 4. Change the settings. 5. Click the Apply button. The settings are saved, and the modified rule is displayed in the Basic ACL Rule Table. Manage Access Control Lists 211

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335

Manage Access Control Lists
211
ProSAFE FS526Tv2, FS726Tv2, and FS728TLP Smart Switches
4.
Click the
Add
button.
The settings are saved, and the IP rule is added to the Basic ACL Rule Table.
Change a Rule for a Basic IP ACL
To change a rule for a basic IP ACL:
1.
Select
Security > ACL > Advanced > IP Rules
.
The IP Rules screen displays.
2.
From the ACL ID menu, select the ACL ID for which you want to change a rule.
3.
Select the check box to the left of the rule for which you want to change the settings.
4.
Change the settings.
5.
Click the
Apply
button.
The settings are saved, and the modified rule is displayed in the Basic ACL Rule Table.
Match Every
Specify whether all packets need to match the rule:
True
. All packets must match the rule. Other rules are not considered, and
the fields and menus to the right of the Match Every menu are disabled,
except for the CPU Notification Mode menu.
False
. Not all packets need to match the rule. Other rules are also
considered.
CPU Notification Mode
Note:
This menu applies
only to model 728TLP.
Specify whether PoE power is turned off to a port if the ACL
rejects the traffic from the port:
Enable
. PoE power to the port is turned off. To
reestablish PoE power to the port, turn on the PoE
power manually (see
Configure the PoE Ports
on
page
75).
Disable
. PoE power to the port is not turned off.
This menu is
available only if
the selection from
the Action menu
is Deny.
Source IP Address
Specify the IP address of the source device that needs to
be compared against the address information in a packet.
Enter an IP address in the dotted-decimal notation.
These fields are
available only if
the selection from
the Match Every
menu is False.
Source IP Mask
Specify the source IP subnet mask that is associated with
the source IP address. The IP subnet mask specifies which
bits in the source IP address need to be compared against
the address information in a packet. This field is required
when you configure a source IP address.
Note:
A subnet mask of 255.255.255.255 indicates that
none of the bits are important. A subnet mask of 0.0.0.0
indicates that all of the bits are important. For example, if
you apply source IP mask 0.0.0.255 to IP address
192.168.0.10, the ACL applies to IP addresses
192.168.0.0 through 192.168.0.255.
Settings
Description