System information

Traffic/Security Filters
Configuring Traffic/Security Filters
Protocol Filters (5300xl Only)
This filter type enables the switch to forward or drop, on the basis of protocol
type, traffic to a specific set of destination ports on the switch. Filtered
protocol types include:
AppleTalk
ARP
DEC LAT
IP
IPX
NetBEUI
SNA
Only one filter for a particular protocol type can be configured at any one time.
For example, a separate protocol filter can be configured for each of the
protocol types listed above, but only one of those can be an IP filter. Also, the
destination ports for a protocol filter can be on different VLANs.
You can configure up to seven protocol filters.
Configuring Traffic/Security Filters
Use this procedure to specify the type of filters to use on the switch and
whether to forward or drop filtered packets for each filter you specify.
1. Select the static filter type(s).
2. For inbound traffic matching the filter type, determine the filter action
you want for each outbound (destination) port on the switch (forward or
drop). The default action for a new filter is to forward traffic of the
specified type to all outbound ports.
3. Configure the filter.
4. Use show filter (page 8-14) to check the filter listing to verify that you have
configured correct action for the desired outbound ports.
8-8