ECS4660-28F_Management Guide-R03

Table Of Contents
C
HAPTER
13
| Security Measures
Access Control Lists
– 406 –
8. If you select “Host,” enter a specific address (e.g., 11-22-33-44-55-
66). If you select “MAC,” enter a base address and a hexadecimal bit
mask for an address range.
9. Set any other required criteria, such as VID, Ethernet type, or packet
format.
10. Click Apply.
Figure 208: Configuring a MAC ACL
CONFIGURING AN
ARP ACL
Use the Security > ACL (Configure ACL - Add Rule - ARP) page to configure
ACLs based on ARP message addresses. ARP Inspection can then use these
ACLs to filter suspicious traffic (see "Configuring Global Settings for ARP
Inspection" on page 411).
CLI REFERENCES
"permit, deny (ARP ACL)" on page 1182
"show ip access-list" on page 1169
"Time Range" on page 957
PARAMETERS
These parameters are displayed:
Type – Selects the type of ACLs to show in the Name list.
Name – Shows the names of ACLs matching the selected type.
Action – An ACL can contain any combination of permit or deny rules.
Packet Type – Indicates an ARP request, ARP response, or either type.
(Range: Request, Response, All; Default: Request)