User manual

C
HAPTER
4
| Configuring the Switch
Configuring Security
– 97 –
Policy ID - An ACL policy configured on the ACE Configuration page
(page 101). (Range: 1-8; Default: 1, which is undefined)
Action - Permits or denies a frame based on whether it matches a rule
defined in the assigned policy. (Default: Permit)
Rate Limiter ID - Specifies a rate limiter (page 98) to apply to the
port. (Range: 1-15; Default: Disabled)
Port Redirect - Defines a port to which matching frames are re-
directed. (Range: 1-28; Default: Disabled)
To use this function, Action must be set to Deny for the local port.
Mirror - Mirrors matching frames from this port. (Default: Disabled)
To use this function, the destination port to which traffic is mirrored
must be configured on the Mirror Configuration page (see "Configuring
Local Port Mirroring" on page 207).
ACL-based port mirroring set by this parameter and port mirroring set
on the general Mirror Configuration page are implemented
independently. To use ACL-based mirroring, enable the Mirror
parameter on the ACL Ports Configuration page. Then open the Mirror
Configuration page, set the “Port to mirror on” field to the required
destination port, and leave the “Mode” field Disabled.
Logging - Enables logging of matching frames to the system log.
(Default: Disabled)
Open the System Log Information menu (page 221) to view any entries
stored in the system log for this entry. Related entries will be displayed
under the “Info” or “All” logging levels.
Shutdown - Shuts down a port when a macthing frame is seen.
(Default: Disabled)
State - Specify the port state:
Enabled - To reopen ports by changing the port configuration in the
ACL configuration pages. (This is the default.)
Disabled - To close ports by changing the volatile port
configuration of the ACL user module.
Counter - The number of frames which have matched any of the rules
defined in the selected policy.
WEB INTERFACE
To configure ACL policies and responses for a port:
1. Click Advanced Configuration, Security, Network, ACL, Ports.
2. Assign an ACL policy configured on the ACE Configuration page, specify
the responses to invoke when a matching frame is seen, including the
filter mode, copying matching frames to another port, logging matching