Cabletron Systems SSIM-R8-02 Spécifications Page 308

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 394
  • Table des matières
  • DEPANNAGE
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 307
Using ACLs
288 Enterasys Xpedition User Reference Manual
Applying ACLs to Layer-4 Bridging Ports
ACLs can also be created to permit or deny access to one or more ports operating in Layer-
4 bridging mode. Traffic that is switched at Layer 2 through the XP can have ACLs applied
on the Layer 3/4 information contained in the packet. The ACLs that are applied to Layer-
4 Bridging ports are only used with bridged traffic. The ACLs that are applied to the
interface are still used for routed traffic.
Like ACLs that are applied to interfaces, ACLs that are applied to Layer 4 bridging ports
can be applied to either inbound or outbound traffic. For each port, only one ACL can be
applied for the inbound direction and one for the outbound direction. You can apply two
ACLs to the same port if one is for inbound traffic and one is for outbound traffic.
To apply an ACL to a port, enter the following command in Configure Mode:
See Layer-4 Bridging and Filtering on page 306 for information on configuring Layer-4
Bridging on the XP.
Using ACLs as Profiles
You can use the acl command to define a profile. A profile specifies the criteria that
addresses, flows, hosts, or packets must meet to be relevant to certain XP features. Once
you have defined an ACL profile, you can use the profile with the configuration command
for that feature. For example, the Network Address Translation (NAT) feature on the XP
allows you to create address pools for dynamic bindings. You use ACL profiles to
represent the appropriate pools of IP addresses.
The following XP features use ACL profiles:
Apply a Layer-4 bridging ACL to a port
acl <name> apply port <port-list>
XP Feature ACL Profile Usage
IP policy Specifies the packets that are subject to the IP routing policy.
Dynamic NAT Defines local address pools for dynamic bindings.
Port mirroring Defines traffic to be mirrored.
Rate limiting Specifies the incoming traffic flow to which rate limiting is
applied.
Web caching Specifies which HTTP traffic should always (or never) be
redirected to the cache servers.
Specifies characteristics of Web objects that should not be cached.
Vue de la page 307
1 2 ... 303 304 305 306 307 308 309 310 311 312 313 ... 393 394

Commentaires sur ces manuels

Pas de commentaire