Netgear GS724Tv4 Software Administration Manual - Page 207

ACL Wizard, ACL Based on Destination IPv4 L4 Port

Page 207 highlights

GS716Tv3, GS724Tv4, and GS748Tv5 Smart Switches ACL Wizard The ACL Wizard helps you to create a simple ACL and apply it to the selected ports easily and quickly. First, you can select an ACL type. Then, you can add an ACL rule to this ACL, and a rule can be applied this ACL on the selected ports. The ACL Wizard allows you to create, but not modify, the ACL. For information about how to modify the rule, see Access Rule Configuration on page 193.  To create an ACL by using the ACL Wizard: 1. Select Security > ACL> ACL Wizard. 2. In the ACL Type field, specify the ACL type used to create the ACL. You can select one type from 10 optional types: • ACL Based on Destination MAC. Use this to create an ACL based on the destination MAC address, destination MAC mask and VLAN. • ACL Based on Source MAC. Use this to create an ACL based on the source MAC address, source MAC mask and VLAN. • ACL Based on Destination IPv4. Use this to create an ACL based on the destination IPv4 address and IPv4 address mask. • ACL Based on Source IPv4. Use this to create an ACL based on the source IPv4 address and IPv4 address mask. • ACL Based on Destination IPv6. Use this to create an ACL based on the destination IPv6 prefix and IPv6 prefix length. • ACL Based on Source IPv6. Use this to create an ACL based on the source IPv6 prefix and IPv6 prefix length. • ACL Based on Destination IPv4 L4 Port. Use this to create an ACL based on the destination IPv4 layer4 port number. • ACL Based on Source IPv4 L4 Port. Use this to create an ACL based on the source IPv4 layer4 port number. • ACL Based on Destination IPv6 L4 Port. Use this to create an ACL based on the destination IPv6 layer4 port number. • ACL Based on Source IPv6 L4 Port. Use this to create an ACL based on the source IPv6 layer4 port number. 3. In the Rule ID field, enter a whole number in the range of (1 to 50) that will be used to identify the rule. 4. From the Action list, select the action to take if a packet matches the rule's criteria. If a packet matches a rule with a permit action, the packet is allowed to continue toward its destination. If a packet matches a rule with a deny action, the packet is dropped. 5. From the Match Every list, select True or False. If the Match Every value is True, all packets will match the rule and will be either permitted or denied. This option is exclusive to all other match criteria, so if Every is selected, no other match criteria can be configured. To configure specific match criteria, this option must be clear. Managing Device Security 207

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290

Managing Device Security
207
GS716Tv3, GS724Tv4, and GS748Tv5 Smart Switches
ACL Wizard
The ACL Wizard helps you to create a simple ACL and apply it to the selected ports easily
and quickly. First, you can select an ACL type. Then, you can add an ACL rule to this ACL,
and a rule can be applied this ACL on the selected ports. The ACL Wizard allows you to
create, but not modify, the ACL. For information about how to modify the rule, see
Access
Rule Configuration
on page 193.
To create an ACL by using the ACL Wizard:
1.
Select
Security
>
ACL
>
ACL Wizard
.
2.
In the ACL Type field, specify the ACL type used to create the ACL.
You can select one type from 10 optional types:
ACL Based on Destination MAC
. Use this to create an ACL based on the
destination MAC address, destination MAC mask and VLAN.
ACL Based on Source MAC
. Use this to create an ACL based on the source MAC
address, source MAC mask and VLAN.
ACL Based on Destination IPv4
. Use this to create an ACL based on the
destination IPv4 address and IPv4 address mask.
ACL Based on Source IPv4
. Use this to create an ACL based on the source IPv4
address and IPv4 address mask.
ACL Based on Destination IPv6
. Use this to create an ACL based on the
destination IPv6 prefix and IPv6 prefix length.
ACL Based on Source IPv6
. Use this to create an ACL based on the source IPv6
prefix and IPv6 prefix length.
ACL Based on Destination IPv4 L4 Port
. Use this to create an ACL based on the
destination IPv4 layer4 port number.
ACL Based on Source IPv4 L4 Port
. Use this to create an ACL based on the source
IPv4 layer4 port number.
ACL Based on Destination IPv6 L4 Port
. Use this to create an ACL based on the
destination IPv6 layer4 port number.
ACL Based on Source IPv6 L4 Port
. Use this to create an ACL based on the source
IPv6 layer4 port number.
3.
In the Rule ID field, enter a whole number in the range of (1 to 50) that will be used to
identify the rule.
4.
From the Action list, select the action to take if a packet matches the rule’s criteria.
If a packet matches a rule with a
permit
action, the packet is allowed to continue toward
its destination. If a packet matches a rule with a
deny
action, the packet is dropped.
5.
From the Match Every list, select
True
or
False
.
If the Match Every value is True, all packets will match the rule and will be either
permitted or denied. This option is exclusive to all other match criteria, so if Every is
selected, no other match criteria can be configured. To configure specific match criteria,
this option must be clear.