beautypg.com

NETGEAR AV Line M4250 GSM4210PX 8-Port Gigabit PoE+ Compliant Managed AV Switch with SFP (220W) User Manual

Page 677

background image

The IPv4 ICMP message types are Echo, echo-reply, host-redirect,
mobile-redirect, net-redirect, net-unreachable, redirect, packet-too-big,
port-unreachable, source-quench, router-solicitation, router-advertisement,
TTL-exceeded, time-exceeded, and unreachable.

• Fragments: Either select the Enable radio button to allow initial fragments (that

is, the fragment bit is asserted) or leave the default Disable radio button selected
to prevent initial fragments from being used.
This option is not valid for rules that match L4 information such as a TCP port
number, because that information is carried in the initial packet.

• Service Type: Select a service type match condition for the extended IP ACL rule.

The possible values are IP DSCP, IP precedence, and IP TOS, which are alternative
methods to specify a match criterion for the same service type field in the IP
header. Each method uses a different user notation. After you make a selection
is made, you can specify the appropriate values.

IP DSCP: This is an optional configuration. Specify the IP DiffServ Code Point
(DSCP) field. The DSCP is defined as the high-order 6 bits of the service type
octet in the IP header. Enter an integer from 0 to 63. To select the IP DSCP,
select one of the DSCP keywords from the menu. To specify a numeric value,
select Other and a field displays in which you can enter numeric value of the
DSCP.

IP Precedence: This is an optional configuration. The IP precedence field in
a packet is defined as the high-order three bits of the service type octet in the
IP header. Enter an integer from 0 to 7.

IP TOS: This is an optional configuration. The IP ToS field in a packet is defined
as all 8 bits of the service type octet in the IP header. The ToS bits value is a
hexadecimal number from 00 to 09 and to aa to ff. The ToS mask value is a
hexadecimal number from 00 to FF. The ToS mask denotes the bit positions
in the ToS bits value that are used for comparison against the IP ToS field in a
packet.
For example, to check for an IP ToS value for which bit 7 is set and is the most
significant value, for which bit 5 is set, and for which bit 1 is cleared, use a ToS
bits value of 0xA0 and a ToS mask of 0xFF.

• Rate Limit Conform Data Rate: Specify the value of the conforming data rate,

which is the data rate at which confirming traffic is limited. The range is from 1 to
4294967295 Kbps.

• Rate Limit Burst Size: Specify the value of the burst size, which is the size at which

bursts of traffic above the confirming data rate are permitted. The range is from
1 to 128 Kbps.

• Time Range: From the Time Range menu, select the timer schedule that must

be associated with the rule. For more information about timer schedules, see

Main User Manual

677

Manage Switch Security

AV Line of Fully Managed Switches M4250 Series Main User Manual