Netgear XSM4324FS Product Data Sheet - Page 43

L2 MAC, L3 IP and L4 Port ACLs

Page 43 highlights

Data Sheet | M4300 series Intelligent Edge Managed Switches MAC Filtering Port MAC Locking Private Edge VLAN Private VLANs Quality of Service (QoS) - Summary Access Lists L2 MAC, L3 IP and L4 Port ACLs Ingress Egress 802.3ad (LAG) for ACL assignment Binding ACLs to VLANs ACL Logging Support for IPv6 fields DiffServ QoS Edge Node applicability Interior Node applicability 802.3ad (LAG) for service interface Support for IPv6 fields Ingress/Egress IEEE 802.1p COS 802.3ad (LAG) for COS configuration WRED (Weighted Deficit Round Robin) Strict Priority queue technology Single Rate Policing Committed Information Rate Committed Burst Size Excessive Burst Size DiffServ feature applied to class maps Auto-VoIP iSCSI Flow Acceleration Dot1p Marking IP DSCP Marking QoS - ACL Feature Support ACL Support (general, includes IP ACLs) MAC ACL Support IP Rule Match Fields: Destination IP Destination IPv6 IP Destination L4 Port Every Packet IP DSCP IP Precedence IP TOS Yes Yes A protected port doesn't forward any traffic Yes (unicast, multicast, or broadcast) to any other protected port - same switch Scales Private Edge VLANs by providing Yes Layer 2 isolation between ports across switches in same Layer 2 network Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes (CLI only) Yes Yes Yes Yes Yes, based on protocols (SIP, H323 and SCCP) or on OUI bytes (default database and user-based OUIs) in the phone source MAC address Yes Yes Yes Yes Yes Inbound/Outbound Inbound/Outbound Inbound/Outbound Inbound/Outbound Inbound/Outbound Inbound/Outbound Inbound/Outbound PAGE 43 of 60

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60

MAC Filtering
Yes
Port MAC Locking
Yes
Private Edge VLAN
Yes
A protected port doesn’t forward any traffic
(unicast, multicast, or broadcast) to any other
protected port - same switch
Private VLANs
Yes
Scales Private Edge VLANs by providing
Layer 2 isolation between ports across
switches in same Layer 2 network
Quality of Service (QoS) - Summary
Access Lists
L2 MAC, L3 IP and L4 Port ACLs
Ingress
Egress
802.3ad (LAG) for ACL assignment
Binding ACLs to VLANs
ACL Logging
Support for IPv6 fields
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
DiffServ QoS
Edge Node applicability
Interior Node applicability
802.3ad (LAG) for service interface
Support for IPv6 fields
Ingress/Egress
Yes
Yes
Yes
Yes
Yes
Yes
IEEE 802.1p COS
802.3ad (LAG) for COS configuration
WRED (Weighted Deficit Round Robin)
Strict Priority queue technology
Yes
Yes
Yes
Yes
Single Rate Policing
Committed Information Rate
Committed Burst Size
Excessive Burst Size
DiffServ feature applied to class maps
Yes (CLI only)
Yes
Yes
Yes
Yes
Auto-VoIP
Yes, based on protocols (SIP, H323 and SCCP) or on OUI bytes (default database and user-based OUIs) in
the phone source MAC address
iSCSI Flow Acceleration
Dot1p Marking
IP DSCP Marking
Yes
Yes
Yes
QoS - ACL Feature Support
ACL Support (general, includes IP ACLs)
MAC ACL Support
IP Rule Match Fields:
Destination IP
Destination IPv6 IP
Destination L4 Port
Every Packet
IP DSCP
IP Precedence
IP TOS
Yes
Yes
Inbound/Outbound
Inbound/Outbound
Inbound/Outbound
Inbound/Outbound
Inbound/Outbound
Inbound/Outbound
Inbound/Outbound
Intelligent Edge Managed Switches
Data Sheet |
M4300 series
PAGE 43 of 60