Layer 3 access control list policy

18

To enter an IP address, select IP Address and complete the following steps:

a.Enter the source IP address on which the ACL filters traffic in the IP Address list and text field.

b.Enter a portion of the source IP address on which the ACL filters traffic in the Wildcard Mask field.

The wildcard mask is a four-part value in IP address format consisting of ones and zeros. Use zeros in the mask if the packet source address must match the IP address. Use ones if to match any value.

For example, if you enter ‘209.157.22.26’ in the IP Address field and ‘0.0.0.255’ in the Wildcard Mask field, then all hosts in the Class C subnet ‘209.157.22.x’ match the ACL.

To select a network, select IP Address and choose a network from the list.

To configure a network, click the ellipsis button and refer to “Network configuration” on page 602.

To enter a host name, select Host and enter the source host name on which the ACL filters traffic in the Host list and text field.

8.Enter a VLAN identifier (valid values are from 1 to 4095) from the VLAN list.

9.Select the Log Enable check box to enable logging.

10.Click the right arrow button.

11.Use the Up and Down arrow buttons to rearrange the ACLs in the ACL Entries list.

12.Click OK on the Add - L3 ACL Configuration dialog box.

The Device_Name - L3 ACL Configuration dialog box displays.

13.To set the configuration type and operations, refer to “Configuring the ACL configuration type and operations” on page 597.

14.(Ethernet routers only) To set the hit statistics duration, refer to “Configuring hit statistics” on page 597.

15.To deploy the configuration, click OK on the Device_Name - L3 ACL Configuration dialog box.

The Deploy to Products - L3 ACL dialog box displays. To deploy the configuration, refer to “Security configuration deployment” on page 629.

Creating a L3 ACL from a saved configuration

To create a ACL from a saved configuration, complete the following steps.

1.Select the device and select Configure > Security > L3 ACL > Product. The Device_Name - L3 ACL Configuration dialog box displays.

2.Select From Saved Configurations from the Add list. The L3 ACL Saved Configurations dialog box displays.

3.Select one or more configurations to add to the new ACL configuration.

Brocade Network Advisor IP User Manual

583

53-1003056-01

 

Page 635
Image 635
Brocade Communications Systems IP250 user manual Creating a L3 ACL from a saved configuration