Netgear GS748TP GS724TP User Manual - Page 141

ACL, MAC ACL, MAC Rules, MAC Binding Configuration, IP ACL

Page 141 highlights

GS700TP Smart Switch Software Administration Manual • Max Entries - Enter the maximum number of MAC addresses that can be learned on the port. The Max Entries field is enabled only if the Limited Dynamic Lock mode is selected. The range is 1-128 entries. The default value is 1. • Action - Select the action to be applied to packets arriving on a locked port. The possible field values are: - Forward - Forwards packets from an unknown source without learning the MAC address. - Discard - Discards packets from any unlearned source. This is the default value. - Shutdown - Discards packets from any unlearned source and shuts down the port. The port remains shut down until reactivated or until the device is reset. • Trap - Select whether traps are enabled or disabled when a packet from an unknown source is received on a locked port. The possible field values are: - Enable - Enable traps. - Disable - Disable traps. This is the default value. • Trap Frequency (Sec) - Enter the frequency at which traps are sent. The field format is in seconds. The range is 1-1,000,000. The default value is 10 seconds. 2. Select the port security Status, Learning Mode, Action and Trap status from the lists in the provided fields in the first row. 3. Enter the Max Entries and Trap Frequency in the provided fields in the first row. 4. Click Apply to update the device. ACL Access Control Lists (ACL) allow network managers to define classification actions and rules for specific ingress ports. Packets entering an ingress port, with an active ACL, are either admitted or denied entry and the ingress port is disabled. If they are denied entry, the user can disable the port. The ACL menu contains the following options: • "MAC ACL" • "MAC Rules" • "MAC Binding Configuration" • "IP ACL" Managing Security v1.0, December 2007 6-17

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188

GS700TP Smart Switch Software Administration Manual
Managing Security
6-17
v1.0, December 2007
Max Entries
– Enter the maximum number of MAC addresses that can be learned on the
port. The Max Entries field is enabled only if the Limited Dynamic Lock mode is selected.
The range is 1-128 entries. The default value is 1.
Action
– Select the action to be applied to packets arriving on a locked port. The possible
field values are:
Forward – Forwards packets from an unknown source without learning the MAC
address.
Discard – Discards packets from any unlearned source. This is the default value.
Shutdown – Discards packets from any unlearned source and shuts down the port. The
port remains shut down until reactivated or until the device is reset.
Trap
– Select whether traps are enabled or disabled when a packet from an unknown
source is received on a locked port. The possible field values are:
Enable – Enable traps.
Disable – Disable traps. This is the default value.
Trap Frequency (Sec)
– Enter the frequency at which traps are sent. The field format is in
seconds. The range is 1-1,000,000. The default value is 10 seconds.
2.
Select the port security
Status
,
Learning Mode
,
Action
and
Trap
status from the lists in the
provided fields in the first row.
3.
Enter the
Max Entries
and
Trap Frequency
in the provided fields in the first row.
4.
Click
Apply
to update the device.
ACL
Access Control Lists (ACL) allow network managers to define classification actions and rules for
specific ingress ports. Packets entering an ingress port, with an active ACL, are either admitted or
denied entry and the ingress port is disabled. If they are denied entry, the user can disable the port.
The
ACL
menu contains the following options:
“MAC ACL”
“MAC Rules”
“MAC Binding Configuration”
“IP ACL”