Netgear GS516TP Software Administration Manual - Page 138

MAC ACL, MAC Rules, Security > ACL > Basic > MAC Rules

Page 138 highlights

GS516TP Gigabit Smart Switches MAC ACL A MAC ACL consists of a set of rules that are matched sequentially against a packet. When a packet meets the match criteria of a rule, the specified rule action (permit or deny) is taken and the additional rules are not checked for a match. The steps for defining a MAC ACL and applying it to the switch are described in the following sections: 1. Use the MAC ACL screen to create the ACL ID. 2. Use the MAC Rules screen to create rules for the ACL. 3. Use the MAC Binding Configuration screen to assign the ACL by its ID number to a port. 4. Optionally, use the MAC Binding Table screen to view the configurations.  To configure a MAC ACL: 1. Select Security > ACL > Basic > MAC ACL. 2. Specify a name for the MAC ACL in the Name field. The name string can include alphabetic, numeric, hyphen, underscore, or space characters only. The name must start with an alphabetic character. 3. Click ADD. Each configured ACL displays the following information: • Rules. Displays the number of rules currently configured for the MAC ACL. • Direction. Displays the direction of packet traffic affected by the MAC ACL, which can be Inbound or blank. To change the name of a MAC ACL, select the check box next to the Name field, update the name, then click APPLY. MAC Rules Use the MAC Rules screen to define rules for MAC-based ACLs. The access list definition includes rules that specify whether traffic matching the criteria is forwarded normally or discarded. A default 'deny all' rule is the last rule of every list.  To configure MAC ACL rules: 1. Select Security > ACL > Basic > MAC Rules. 2. From the ACL Name field, specify the existing MAC ACL to which the rule applies. For information about how to set up a new MAC ACL, use the MAC ACL screen. 3. In the ID field, enter an ID for the rule. The valid range is 1-10. 4. Configure the following settings: • Action. Specify what action must be taken if a packet matches the rule's criteria. • Permit. Forwards packets that meet the ACL criteria. • Deny. Drops packets that meet the ACL criteria. 138

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208

138
GS516TP Gigabit Smart Switches
MAC ACL
A MAC ACL consists of a set of rules that are matched sequentially against a packet. When a
packet meets the match criteria of a rule, the specified rule action (permit or deny) is taken
and the additional rules are not checked for a match.
The steps for defining a MAC ACL and applying it to the switch are described in the following
sections:
1.
Use the
MAC ACL
screen to create the ACL ID.
2.
Use the
MAC Rules
screen to create rules for the ACL.
3.
Use the
MAC Binding Configuration
screen to assign the ACL by its ID number to a port.
4.
Optionally, use the
MAC Binding Table
screen to view the configurations.
To configure a MAC ACL:
1.
Select
Security > ACL > Basic > MAC ACL
.
2.
Specify a name for the MAC ACL in the Name field. The name string can include alphabetic,
numeric, hyphen, underscore, or space characters only. The name must start with an
alphabetic character.
3.
Click
ADD
.
Each configured ACL displays the following information:
Rules
. Displays the number of rules currently configured for the MAC ACL.
Direction
. Displays the direction of packet traffic affected by the MAC ACL, which can
be Inbound or blank.
To change the name of a MAC ACL, select the check box next to the Name field, update the
name, then click
APPLY.
MAC Rules
Use the MAC Rules screen to define rules for MAC-based ACLs. The access list definition
includes rules that specify whether traffic matching the criteria is forwarded normally or
discarded. A default 'deny all' rule is the last rule of every list.
To configure MAC ACL rules:
1.
Select
Security > ACL > Basic > MAC Rules
.
2.
From the ACL Name field, specify the existing MAC ACL to which the rule applies.
For information about how to set up a new MAC ACL, use the
MAC ACL
screen.
3.
In the ID field, enter an ID for the rule. The valid range is 1-10.
4.
Configure the following settings:
Action
. Specify what action must be taken if a packet matches the rule's criteria.
Permit
. Forwards packets that meet the ACL criteria.
Deny
. Drops packets that meet the ACL criteria.