Data Center Fabric Manager Enterprise User Manual v10.3.X (53-1001357-01, November 2009)

DCFM Enterprise User Manual 429
53-1001357-01
Adding an ACL to a switch
13
Action - Select Permit or Deny from the list.
NOTE
If Action = Deny is selected for any ACL entity, an informational dialog displays with the
following message: “This ACL entity will stop all traffic to the port or LAG on which this ACL
is assigned.”
Source - Enter the media access control (MAC) address where the packets originate. Mask
is the subnet mask of the source MAC address. If you select “Any” from the Source list, the
text box is cleared and disabled and the subnet mask is not applicable.
In the Extended ACL dialog box, you can select Host from the Source list, in addition to
MAC or Any. If you select Host from the list, enter the host name where the packets
originate.
Destination - Enter the user-supplied packet destination MAC address. Mask is the packet
subnet mask of the packet destination MAC address. If you select “Any” from the
Destination list, the text box is cleared and disabled and the subnet mask is not
applicable.
In the Extended ACL dialog box, you can select Host from the Destination list, in addition to
MAC or Any. If you select Host from the list, enter the host name of the packet destination.
Count - Instructs the system to maintain a counter.
Ether Type - Specifies the Ethernet protocol being transferred in the Ethernet frame. Only
one of the following Ether types is supported at a time.
Custom - Enter a value between the range of 1536 and 65535.
Arp
FCoE
IPv4
6. Click the right button to add the ACL entity to the ACL Entities table.
7. Click OK to close the dialog box. The newly-added ACL displays in the ACL Entities table.
If the name of the ACL already exists (duplicate Standard or Extended ACL names cannot exist),
an overwrite warning message displays. Click Yes to overwrite the existing ACL.
If the name of the ACL does not already exist, the CEE Confirmation and Status dialog box
displays.
8. Review the changes carefully before you accept them.
9. Click the Start button to apply the changes, or click Close to abort the operation.
You can now assign the ACL to ports or link aggregation groups (LAGs) on the switch.