User guide
Contents
OmniSwitch 6600 Family Network Configuration Guide April 2005 xix
Policy Applications .....................................................................................................23-50
Basic QoS Policies ...............................................................................................23-50
Basic Commands ...........................................................................................23-51
Traffic Prioritization Example .......................................................................23-51
Bandwidth Shaping Example ........................................................................23-51
ICMP Policy Example ..........................................................................................23-52
802.1p and ToS/DSCP Marking and Mapping ....................................................23-52
Chapter 24 Configuring ACLs ......................................................................................................24-1
In This Chapter ..............................................................................................................24-1
ACL Specifications .......................................................................................................24-2
ACL Defaults ................................................................................................................24-2
Quick Steps for Creating ACLs ....................................................................................24-3
ACL Overview ..............................................................................................................24-4
Rule Precedence .....................................................................................................24-5
Example: Rule Type ........................................................................................24-5
Example: Rule Order .......................................................................................24-5
Example: Layer 3 Rules With Compatible Actions ........................................24-6
Example: Layer 3 Rules With Conflicting Actions .........................................24-6
Interaction With Other Features .............................................................................24-7
Valid Combinations ................................................................................................24-7
ACL Configuration Overview .......................................................................................24-8
Setting the Global Disposition ......................................................................................24-8
Creating Condition Groups For ACLs ........................................................................24-10
Configuring ACLs .......................................................................................................24-10
Creating Policy Conditions For ACLs .................................................................24-10
Creating Policy Actions For ACLs ......................................................................24-11
Creating Policy Rules for ACLs ...........................................................................24-11
Layer 2 ACLs .......................................................................................................24-12
Layer 2 ACL: Example 1 ..............................................................................24-13
Layer 2 ACL: Example 2 ..............................................................................24-13
Layer 3 ACLs .......................................................................................................24-14
Layer 3 ACL: Example 1 ..............................................................................24-14
Layer 3 ACL: Example 2 ..............................................................................24-15
Multicast Filtering ACLs .....................................................................................24-15
Using ACL Security Features .....................................................................................24-17
Configuring a UserPorts Group ............................................................................24-17
Configuring a DisablePorts ACL .........................................................................24-18
Configuring a DropServices Group ACL .............................................................24-19
Configuring ICMP Drop Rules ............................................................................24-21
Configuring a BPDUShutdownPorts Group ........................................................24-21
Verifying the ACL Configuration ...............................................................................24-22
ACL Application Example ..........................................................................................24-24