User Manual

Table Of Contents
M4300 Intelligent Edge Series Fully Managed Stackable Switches
Manage Switch Security User Manual621
- IP Precedence. This is an optional configuration. The IP precedence field in a
packet is defined as the high-order three bits of the service type octet in the IP
header. Enter an integer from 0 to 7.
- IP TOS.
This is an optional configuration. The IP ToS field in a packet is defined
as all 8 bits of the service type octet in the IP header. The ToS bits value is a
hexadecimal number from 00 to 09 and to aa to ff. The ToS mask value is a
hexadecimal number from 00 to FF. The ToS mask denotes the bit positions in the
ToS bits value that are used for comparison against the IP ToS field in a packet.
For example, to check for an IP ToS value for which bit 7 is set and is the most
significant value, for which bit 5 is set, and for which bit 1 is cleared, use a
ToS
bits value of 0xA0 and a ToS mask of 0xFF.
Rate Limit Conform Data Rate. Specify the conforming data rate of IP
ACL rule.
Valid values are 1 to 4294967295 in Kbps.
Rate Limit Burst Size. Specify the burst size of the IP
ACL rule. Valid values are 1 to
128 in Kbytes.
Time Range. Specify the name of the time range that you want to associate with the
IP ACL
rule.
8. Click the Apply button.
Your settings are saved.
The Rule Status field displays whether the
ACL rule is active or inactive. Blank means
that no timer schedules are assigned to the rule.
Configure an IPv6 ACL
An IPv6 ACL consists of a set of rules that are matched sequentially against a packet. When
a packet meets the match criteria of a rule, the specified rule action (permitted or denied) is
taken, and the additional rules are not checked for a match.
You must specify the interfaces to which an IP ACL applies and select whether the IP ACL
applies to inbound or outbound traf
fic.
To configure an IPv6 ACL:
1. Launch a web browser
.
2. In the address field of your web browser
, enter the IP address of the switch.
The login window opens.
3. Enter admin as the user name, enter your local device password,
and click the Login
button.
The first time that you log in, no password is required. However, you then must specify a
local device password to use each subsequent time that you log in.
The System Information page displays.
4. Select Security >
ACL > Advanced > IPv6 ACL.