Moxa EDS-518E-4GTXSFP-T [96/116] Access control list configuration and setup

Moxa EDS-518E-4GTXSFP-T [96/116] Access control list configuration and setup
Managed Ethernet Switch (UI_2.0_FW_5.x) Featured Functions
3-83
How an ACL Works
The ACL working structure is based on access lists. Each access list is a filter. When a packet enters into or exits
from a switch, the ACL will compare the packet to the rules in the access lists, starting from the first rule. If a
packet is rejected or accepted by the first rule, the switch will drop or pass this packet directly without checking
the rest of the lower-priority rules. In other words, Access Control Lists have “Priority Index” as an attribute to
define the priority in the web configuration console.
There are two types of settings for an ACL: list settings and rule settings. In order to be created, an Access
Control List needs the following list settings: Name, Priority Index, Filter Type, and Ports to Apply. Once created,
each Access Control List has its own set of rule settings. Priority Index represents the priority of the names in
the access list. Names at Priority Index 1 have first priority in packet filtering. The Priority Index is adjustable
whenever users need to change the priority. Two types of packet filtering can be used:
IP based
MAC Based
The filter type defines whether the access list will examine packets based on IP or MAC address. The type
affects what detailed rules can be edited. You can then assign the ports you would like to apply the list to. You
can also define Ingress and Egress per port.
After adding a new access control list, you can also create new rules for the access control list. Each ACL group
accepts 10 rules. Rules can filter packets by source and destination IP/MAC address, IP protocol, TCP/UDP Port,
Ethernet Type, and VLAN ID.
After all rules are set, the ACL starts to filter the packets by the rule with the highest Priority Index (smaller
number, higher priority). Once a rule denies or accepts its access, the packet will be dropped or passed.
Access Control List Configuration and Setup
Access Control Profile Settings
On this page, you can configure two settings: (1) Add/Modify Access Control list, and (2) Adjust ACL ID.
Add/Modify Access Control List
This function lets you add a new access control profile or modify an existing access control profile. The
operation depends on the ACL ID you select. If the selected ACL ID is still empty, you can start by creating a
new access control profile. Parameters for editing are as follows:

Содержание

Похожие устройства

Скачать