24-Port 10/100 + 2-Port Gigabit Switch with Webview and Power over Ethernet

MAC ACL

To configure a MAC ACL do the following.

Specify the action (that is, Permit or Deny). Specify the source and/or destination addresses. Select the address type (Any, Host, or MAC). If you select “Host,” enter a specific address (for example, 11-22-33-44-55-66). If you select “MAC,” enter a base address and a hexadecimal bitmask for an address range. Set any other required criteria, such as VID, Ethernet type, or packet format. Then click Add.

Action. An ACL can contain any combination of permit or deny rules.

Source/Destination Address Type. Use “Any” to include all possible addresses, “Host” to indicate a specific MAC address, or “MAC” to specify an address range with the Address and Bitmask fields. (Options: Any, Host, MAC; Default: Any)

Source/Destination MAC Address. Source or destination MAC address.

Source/Destination Bitmask. Hexidecimal mask for source or destination MAC address.

VID. VLAN ID. (Range: 1-4094)

Ethernet Type. This option can only be used to filter Ethernet II formatted packets. (Range: 0-65535) A detailed listing of Ethernet protocol types can be found in RFC 1060. A few of the more common types include 0800 (IP), 0806 (ARP), 8137 (IPX).

NOTE: MAC addresses specified in MAC ACLs will conflict with any user-defined static MAC addresses.

Figure 5-42: ACL Conf - Adding/Editing MAC ACL

NOTE: When configuring a MAC ACL that includes the rule "deny any any" for a specific VLAN, the following restrictions apply: Received unicast packets with unknown addresses are not flooded to all ports in the VLAN. All dynamically learned MAC addresses in the specified VLAN are flushed from the switch's MAC address table. Other rules in the MAC ACL allow only specific Host source or destination MAC addresses to be specified.

59

Chapter 5: Configuring the Switch through the Web Utility

Security

Page 67
Image 67
Linksys SRW224P manual Mac Acl

SRW224P specifications

The Linksys SRW224P is a versatile and efficient managed switch that caters to the needs of small to medium-sized businesses. This Layer 2 switch stands out with its robust functionality and user-friendly design, making it an ideal choice for networking professionals looking to enhance their network infrastructure.

One of the standout features of the SRW224P is its 24 Gigabit Ethernet ports, which provide high-speed connectivity for various devices across the network. This is particularly beneficial in environments with bandwidth-hungry applications, such as data transfers, video conferencing, and online collaboration tools. Additionally, the switch comes with 2 dual-personality ports that can be used as either Gigabit Ethernet or SFP (Small Form-factor Pluggable) ports, allowing for flexible and scalable network setups.

Power over Ethernet (PoE) capability is another significant aspect of the SRW224P. With a total PoE output of up to 370 watts, the switch can power devices such as IP cameras, VoIP phones, and wireless access points directly through the Ethernet cable, simplifying the installation process and reducing cable clutter. This feature is particularly advantageous for organizations seeking to deploy network devices in areas where power outlets are limited.

The SRW224P also boasts advanced management features, including VLAN support for segmenting network traffic, Quality of Service (QoS) for prioritizing critical applications, and Spanning Tree Protocol (STP) for redundant network paths. These capabilities enhance network performance and reliability, ensuring that users experience minimal downtime and efficient data flow.

Security is a top priority with the SRW224P, which includes features such as port security, access control lists (ACLs), and DHCP snooping. These measures help protect the network from unauthorized access and potential attacks, safeguarding sensitive information and maintaining operational integrity.

In terms of user interface, the Linksys SRW224P is equipped with a web-based management interface that allows for easy configuration and monitoring. This intuitive interface enables IT administrators to manage the switch remotely, providing real-time insights into network performance and facilitating troubleshooting.

Overall, the Linksys SRW224P managed switch combines high performance, advanced features, and security measures that make it a reliable choice for businesses aiming to optimize their network infrastructure. Its PoE capabilities, extensive port options, and management features ensure that it meets the demands of modern networking environments, making it a valuable asset for any organization.