User manual
of latency time to implement blocking once the rule is triggered. Some models can activate blocking
in less than a second while some models may require a minute or more.
A second difference is the maximum number of rules supported by different switches. Some
switches support a maximum of 50 rules while others support up to 800 (usually, in order to block a
host or network, one rule per switch port is needed). When this limit has been reached no more hosts
or networks will be blocked out.
Important: Clearing the ACL rule set on the switch
ZoneDefense uses a range in the ACL rule set on the switch. To avoid potential
conflicts in these rules and guarantee the firewall's access control, it is strongly
recommended that the administrator clear the entire ACL rule set on the switch before
executing the ZoneDefense setup.
12.3.5. Limitations Chapter 12. ZoneDefense
439










