Table 139 Configuration items

ItemDescription

ACL

Rule ID

Select the basic IPv4 ACL for which you want to configure rules. Available ACLs are basic IPv4 ACLs.

Select the Rule ID box and enter a number for the rule.

If you do not specify the rule number, the system will assign one automatically.

If the rule number you specify already exists, the following operations modify the configuration of the rule.

Select the action to be performed for IPv4 packets matching the rule:

Action

Permit—Allows matched packets to pass.

 

Deny—Drops matched packets.

 

 

 

Select this box to apply the rule to only non-first fragments.

Check Fragment

If you do no select this box, the rule applies to all fragments and

 

non-fragments.

 

 

 

Select this box to keep a log of matched IPv4 packets.

 

A log entry contains the ACL rule number, operation for the matched packets,

Check Logging

protocol number, source/destination address, source/destination port

 

number, and number of matched packets.

 

This function is not supported.

 

 

Source IP Address

Select the Source IP Address box and enter a source IPv4 address and a

 

Source Wildcard

wildcard mask, in dotted decimal notation.

 

 

 

Time Range

Select the time range during which the rule takes effect.

 

 

Configuring a rule for an advanced IPv4 ACL

1.Select QoS > ACL IPv4 from the navigation tree.

2.Click the Advance Setup tab.

The rule configuration page for an advanced IPv4 ACL appears.

456