User Manual

Table Of Contents
24-Port and 48-Port Gigabit Ethernet PoE+ Smart Switches with 4 SFP Ports
Manage Device Security User Manual424
9. Specify the following match criteria for the rule:
Sequence Number. Enter an ACL sequence number in the range of 1 to 2147483647
that is used to identify the rule.
An IP ACL can contain up to 50 rules.
Action. Select the ACL forwarding action, which is one of the following:
-
Permit. Forward packets that meet the ACL criteria.
-
Deny. Drop packets that meet the ACL criteria.
Egress Queue. If the selection form the Action menu is Permit, you can specify the
hardware egress queue identifier that is used to handle all packets matching this IP
ACL rule. The range of queue IDs is 0 to 7.
Logging. If the selection form the Action menu is Deny, you can enable logging for
the ACL by selecting the
Enable radio button. (Logging is subject to resource
availability in the device.)
If the access list trap flag is also enabled, periodic traps are generated, indicating the
number of times this rule was evoked during the report interval. A fixed five-minute
report interval is used for the switch.
A trap is not issued if the ACL rule hit count is
zero for the current interval.
Match Every. Select whether all packets must match the selected IP ACL rule:
-
Enable. All packets must match the selected IP
ACL rule and are either permitted
or denied.
- Disable. Not all packets need to match the selected IP ACL rule.
Interface Mirror. From the Mirror menu, select the specific egress interface to which
the matching traffic stream must be copied, in addition to being forwarded normally by
the switch.
This field cannot be set if a redirect interface is already configured for the IP
ACL rule.
This field is visible for a Permit action.