User manual

16‐PortGigabitEthernetPoE+Web‐ManagedSwitchwith2SFPPorts
43
6.5.3.2 ACL
Inthissection,setuptheactualaccesscontrollist(ACL).TheACLconnectsIPaddressandportinformationwitha
timetable(seesection6.5.3.1)andanactiontoeitherallowordenyaccesstothenetworkthroughtheswitch.The
examplebelowcreatesanACL,whichallowsaccesstothenetworkforanycomputer
Item Description
ACLNumber EachACLrulegetsanumber.Selecttheonefromthedrop‐downlistforwhich
youwanttocreatethisACE(AccessControlEntry).
Action Definewhetherthisrulegrantsaccess(“allow”)tothenetwork,orprohibitsit
(“deny”).
SRC/DESTIPAddress SpecifythesourceanddestinationIPaddressforthisACE.Youcanprovidea
singleIPaddress(e.g.,192.168.2.100)oraspecificnetwork(e.g.,255.255.255.0).
SRC/DESTPort ThisoptionisonlyvisibleiftheACEiscreatedforTCPorUDP.Itwillnotshowfor
IPACLs(seenextparameter).Youcanprovideasingleportorarangeofports.
ProtocolMatching IP:TheACEisappliedtopacketsbasedontheirsourceand/ordestinationIP
address.
TCP/UDP:TheACEisappliedtopacketsbasedontheirsourceand/ordestination
IPaddressandtheportnumberfortheselectedprotocol.
Time IfyouwanttolimittheACEtoaspecifictimetable(seesection6.5.3.1),youcan
selectitfromthedrop‐downlist.
Example1–Disallowaccesstothenetworkforanycomputeroutsideoftheworkinghours.
