Motorola T3 Power Broadband manual Access Control Lists ACLs, Ip access-list config 1 deny http

Page 31

Managing the Wireless WallPlates

Access Control Lists (ACLs)

Configure layer 3 ACLs based on an administrator defined IP addresses and pre-defined services. The pre- defined services are HTTP, FTP, Telnet, SNMP.

Number of ACLs:

20

Each ACL index:

IP address

 

pre-defined service

 

combination of IP address and service

ACLs are processed from index 1 through index 20. If no matches are found, the access is granted.

Place the most restrictive access rules on the lower index number.

To enter ACLs from the CLI, use the following command:

ip access-list config <1-20(index)> <denypermit(type)> [ip-address #.#.#.#] [mask #.#.#.#] [service allftptelnethttpsnmp]

Ex: To block all HTTP access from any device, enter:

ip access-list config 1 deny http

Ex: To block all network access from all devices except Telnet from a specific subnet, enter:

ip access-list config 1 permit ip-address 64.174.72.129 mask 255.255.255.128 service telnet ip access-list config 10 deny service all

Note: A 32-bit subnet mask will specify one single device with the specified IP address

Motorola, Inc.

570510-001-00 rev A

Page 31 of 50

 

 

 

Image 31
Contents T3 PowerBroadband Page International Regulatory Statements Model Number45225Frequency of Operation FCC and IC RF Exposure GuidelinesMarking and European Economic Area EEA Radio Frequency Interference Requirements- FCCM2 WallPlate T2-2500 and T3 SwitchWaste Electrical and Electronic Equipment Weee Commands and Syntax Quality of Service QoS Show Commands Commands and SyntaxCommand Hierarchy Administrative CommandsCommand Completion Global CommandsStyle Conventions Interface Range M2 Ethernet WallPlate T3 PowerBroadband SwitchAdaptive Line Power System DescriptionFeatures of the MC-802 802.11b/g radio Physical MC-802 Wireless WallPlateM2 Ethernet WallPlate Physical Radio Model Number Part Number Description HardwareModel Numbers and Description Model Numbers and Description for related ProductsMounting Options Front ViewRear View Cross-Connect ConnectionsLED Status Lights M2 2 port Ethernet WallPlatePage Access Methods System AdministrationManagement Access CLI Configuration Script filesFile dir Configuration Files using the webUIHttp Menus T3 Firmware Wireless WallPlate FirmwareReboot the Wireless WallPlate to activate the new software Upgrading the FirmwareLine Quality Summary Startup Running View System Configuration and StatusSystem config mode automanualmode Commit modeReset to Default Configuration Other Configuration HelpShow remote image Managing the Wireless WallPlatesWallPlate Inventory and Firmware Image Show remote inventoryPrivate IP address IP Addresses Static IP address pool Public IP addressGlobal Radio Commands Configuring a WlanMonitor the WLANs and radios Per-WLAN CommandsExpanded Statistics and Status Ip access-list config 1 deny http Access Control Lists ACLsConfigure the Radius Server Radius network authenticated loginAuthenticating Administrative Access Authenticating Clients usingComponents provided with the MC-802 WallPlate WallPlate InstallationBasic Configuration Tools RequiredStep Components required to purchaseDetermine which port is being installed Enable line powerEnable line power Finish the installationTagged Untagged Vlan Specification802.1Q VLANs Vlan terminologyTag-based Vlan Mode Port-based Vlan Mode Vlan commandsVlan General webUI Web UI configurationSet Vlan Ingress Rules Tag-based Vlan webUICreate/Delete VLANs Set Vlan Egress RulesPort-based Vlan webUI QoS commands and concepts Quality of Service QoSNetwork qos interface queue interface-id mode mode 802.1P bit Dynamic packet classificationQueue Packet transmission CommandsQoS Example Packet ClassificationLine Status Line Current Value Watts Reference Line CurrentFast Ethernet WallPlate ports Appendix a Pin-out AssignmentsT3 PowerBroadband Appendix B Hardware SpecificationsM2 WallPlate MC-802 Wireless WallPlate