beautypg.com

Brocade Mobility Access Point System Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 565

background image

Brocade Mobility Access Point System Reference Guide

555

53-1003100-01

8

FIGURE 16

MAC Firewall Rules screen - Adding a new rule

4. If adding a new MAC Firewall Rule, provide a name up to 32 characters in length.

5. Define the following parameters for the MAC Firewall Rule:

Allow

Every MAC firewall rule is made up of matching criteria rules. The action defines what to
do with the packet if it matches the specified criteria. The following actions are supported:

Deny - Instructs the firewall to not to allow a packet to proceed to its destination.

Permit - Instructs the firewall to allow a packet to proceed to its destination.

Source MAC / Destination
MAC

Enter both Source MAC and Destination MAC addresses. Access points use the source IP
address, destination MAC address as basic matching criteria. Provide a subnet mask if
using a mask.

Action

The following actions are supported:

Log - Events are logged for archive and analysis.

Mark - Modifies certain fields inside the packet and then permits them. Therefore,
mark is an action with an implicit permit.

VLAN 802.1p priority.

DSCP bits in the IP header

Mark, Log - Conducts both mark and log functions.