Access Control
Configuring IPv4-Based ACEs
Configuring IPv4-Based ACEs
STEP 1
STEP 2
STEP 3
STEP 4
Cisco 220 Series Smart Switches Administration Guide Release 1.1.0.x
To add rules (ACEs) to an IPv4-based ACL:
Click Access Control > IPv4-Based ACE.
Select an ACL, and click Go. All currently defined IPv4-based ACEs for the
selected ACL are displayed.
To add a rule (ACE) for the selected ACL, click Add.
Enter the following information:
•
ACL Name—Displays the name of the ACL.
•
Priority—Enter the priority. ACEs with higher priority are processed first.
•
Action—Select the action assigned to the packet matching the ACE. The
options are:
Permit
-
—Forwards packets that meet the ACE criteria.
Deny
-
—Drops packets that meet the ACE criteria.
-
Shutdown
—Drops packet that meets the ACE criteria and disables the
port to which the packet was addressed. Ports are reactivated on the
Port Management > Error Recovery Settings page.
•
Protocol—Creates an ACE based on a specific protocol or protocol ID.
-
Any (IP)—Select to accept all IP protocols.
-
Select from list—Select one of the following protocols from the drop-
down menu:
ICMP—Internet Control Message Protocol
IP in IP—IP in IP encapsulation
TCP—Transmission Control Protocol
EGP—Exterior Gateway Protocol
IGP—Interior Gateway Protocol
UDP—User Datagram Protocol
HMP—Host Mapping Protocol
RDP—Reliable Datagram Protocol
17
240