Netgear FS728TLP Web Management User Guide - Page 313

Standard IP ACL Sample Configuration, To create such an IP-based ACL

Page 313 highlights

ProSAFE FS526Tv2, FS726Tv2, and FS728TLP Smart Switches To allow additional traffic to enter these ports, you need to add a permit rule with the desired match criteria, and bind the new rule to interfaces 6, 7, and 8. Standard IP ACL Sample Configuration The following example shows how to create an IP-based ACL that prevents any IP traffic from the finance department from being allowed on the ports that are associated with other departments. Traffic from the finance department is identified by each packet's network IP address.  To create such an IP-based ACL: 1. Select Security > ACL > Advanced > IP ACL. The IP ACL screen displays. 2. Create an IP ACL with an ID of 1. For more information about creating IP ACLs, see Manage IP ACL Identifiers on page 208. 3. Select Security > ACL > Advanced > IP Rules. The IP Rules screen displays. 4. Create a rule for IP ACL 1 with the following settings: Field or Menu ID Configuration Setting 1 Action Match Every Deny False Assign Queue Mirror Interface Redirect Interface Do not select Do not select Do not select Source IP Address Source IP Mask 192.168.187.0 0.0.0.255 For more information about creating IP ACL rules, see Manage Basic IP ACL Rules on page 209. 5. Create a second rule for IP ACL 1 with the following settings: Field or Menu ID Action Match Every Configuration Setting 2 Permit True Configuration Examples 313

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335

Configuration Examples
313
ProSAFE FS526Tv2, FS726Tv2, and FS728TLP Smart Switches
To allow additional traffic to enter these ports, you need to add a
permit
rule with the desired
match criteria, and bind the new rule to interfaces 6, 7, and 8.
Standard IP ACL Sample Configuration
The following example shows how to create an IP-based ACL that prevents any IP traffic
from the finance department from being allowed on the ports that are associated with other
departments. Traffic from the finance department is identified by each packet’s network IP
address.
To create such an IP-based ACL:
1.
Select
Security > ACL > Advanced > IP ACL
.
The IP ACL screen displays.
2.
Create an IP ACL with an ID of 1.
For more information about creating IP ACLs, see
Manage IP ACL Identifiers
on page
208.
3.
Select
Security > ACL > Advanced > IP Rules
.
The IP Rules screen displays.
4.
Create a rule for IP ACL 1 with the following settings:
Field or Menu
Configuration Setting
ID
1
Action
Deny
Match Every
False
Assign Queue
Do not select
Mirror Interface
Do not select
Redirect Interface
Do not select
Source IP Address
192.168.187.0
Source IP Mask
0.0.0.255
For more information about creating IP ACL rules, see
Manage Basic IP ACL Rules
on
page
209.
5.
Create a second rule for IP ACL 1 with the following settings:
Field or Menu
Configuration Setting
ID
2
Action
Permit
Match Every
True