C
HAPTER
5
| Monitoring the Switch
Displaying Information About Security Settings
– 220 –
■
IPv4/ICMP: ACE will match IPv4 frames with ICMP protocol.
■
IPv4/UDP: ACE will match IPv4 frames with UDP protocol.
■
IPv4/TCP: ACE will match IPv4 frames with TCP protocol.
■
IPv4/Other: ACE will match IPv4 frames, which are not ICMP/UDP
or TCP.
◆ Action – Indicates the forwarding action of the ACE:
■
Permit: Frames matching the ACE may be forwarded and learned.
■
Deny: Frames matching the ACE are dropped.
◆ Rate Limiter – Indicates the rate limiter number implemented by the
ACE. The allowed range is 1 to 15.
◆ Port Copy – Indicates the port copy operation implemented by the
ACE. Frames matching the ACE are re-directed to the listed port.
◆ Mirror - Indicates the port mirror operation implemented by the ACL.
Frames matching the ACE are mirrored to the listed port. (See
"Configuring Port Mirroring" on page 194)
◆ CPU – Forwards packet that matched the specific ACE to the CPU.
◆ CPU Once – Forwards first packet that matched the specific ACE to the
CPU.
◆ Counter – The number of times the ACE was matched by a frame.
◆ Conflict – This field shows “Yes” if a specific ACE is not applied due to
hardware limitations.
WEB INTERFACE
To display ACL status:
1. Click Monitor, Security, Network, ACL Status.
2. Select a software module from the scroll-down list.
Figure 100: ACL Status