6
SPS208G/SPS224G4/SPS2024 Service Provider Switches User Guide 98
ACL
The ACL configuration options are as follows:
• IP Based ACL
• MAC Based ACL
IP Based ACL
Access Control Lists
(ACL) allow network managers to define classification
actions and rules for specific ingress ports.The device supports up to 1,024 ACLs.
Packets entering an ingress port, with an active ACL, are either admitted or denied
entry and the ingress port is disabled. If they are denied entry, the user can
disable the port. For example, a network administrator defines an ACL rule that
states, port number 20 can receive TCP packets, however, if a UDP packet is
received, the packet is dropped. ACLs are composed of access control entries
(ACEs) that are made of the filters that determine traffic classifications. The total
number of ACEs that can be defined in all ACLs together is 1024.
NOTE ACL configuration may take several minutes, depending on the device’s usage of
Ternary Content Addressable Memory (TCAM) resources.