Access Control
Configuring IPv4-Based ACEs
Cisco 220 Series Smart Switches Administration Guide Release 1.1.0.x 240
17
Configuring IPv4-Based ACEs
To add rules (ACEs) to an IPv4-based ACL:
STEP 1 Click Access Control > IPv4-Based ACE.
STEP 2 Select an ACL, and click Go. All currently defined IPv4-based ACEs for the
selected ACL are displayed.
STEP 3 To add a rule (ACE) for the selected ACL, click Add.
STEP 4 Enter the following information:
• ACL Name—Displays the name of the ACL.
• Priority—Enter the priority. ACEs with higher priority are processed first.
• Action—Select the action assigned to the packet matching the ACE. The
options are:
-
Permit
—Forwards packets that meet the ACE criteria.
-
Deny
—Drops packets that meet the ACE criteria.
-
Shutdown
—Drops packet that meets the ACE criteria and disables the
port to which the packet was addressed. Ports are reactivated on the
Port Management > Error Recovery Settings page.
• Protocol—Creates an ACE based on a specific protocol or protocol ID.
- Any (IP)—Select to accept all IP protocols.
- Select from list—Select one of the following protocols from the drop-
down menu:
ICMP—Internet Control Message Protocol
IP in IP—IP in IP encapsulation
TCP—Transmission Control Protocol
EGP—Exterior Gateway Protocol
IGP—Interior Gateway Protocol
UDP—User Datagram Protocol
HMP—Host Mapping Protocol
RDP—Reliable Datagram Protocol