beautypg.com

10 acl, 1 mac-based acl – PLANET GS-4210-24P2S User Manual

Page 238

background image

User’s Manual of GS-4210-24P2S

4.10 ACL

ACL

is an acronym for Access Control List. It is the list table of ACEs, containing access control entries that specify individual

users or groups permitted or denied to specific traffic objects, such as a process or a program. Each accessible traffic object

contains an identifier to its ACL. The privileges determine whether there are specific traffic object access rights.

ACL implementations can be quite complex, for example, when the ACEs are prioritized for the various situation. In networking,

the ACL refers to a list of service ports or network services that are available on a host or server, each with a list of hosts or

servers permitted or denied to use the service. ACL can generally be configured to control inbound traffic, and in this context,

they are similar to firewalls.

ACE

is an acronym for Access Control Entry. It describes access permission associated with a particular ACE ID.

There are three ACE frame types (Ethernet Type, ARP, and IPv4) and two ACE actions (permit and deny). The ACE also

contains many detailed, different parameter options that are available for individual application.

The ACL page contains links to the following main topics:

MAC-Based ACL

Configuration MAC-based ACL setting

MAC-Based ACE

Add / Edit / Delete the MAC-based ACE (Access Control Entry) setting

IPv4-Based ACL

Configuration IPv4-based ACL setting

IPv4-Based ACE

Add / Edit / Delete the IPv4-based ACE (Access Control Entry) setting

Configure the ACL parameters (ACE) of each switch port.

ACL Binding

4.10.1 MAC-Based ACL

This page shows the ACL status by different ACL users. Each row describes the ACE that is defined. It is a conflict if a specific

ACE is not applied to the hardware due to hardware limitations. MAC-Based ACL screens in

Figure 4-10-1

&

Figure 4-10-2

appear.

Figure 4-10-1:

MAC-Based ACL Page Screenshot

The page includes the following fields:

Object

Description

Create a named MAC-based ACL list.

ACL Name

Button

: Click to add MAC-Based ACL setting.

238