ACCESS CONTROL LIST COMMANDS

IP ACLs

Table 4-36 IP ACL Commands

Command

Function

Mode

Page

 

 

 

 

access-list ip

Creates an IP ACL and enters

GC

4-123

 

configuration mode

 

 

 

 

 

 

access-list ip

Automatically creates extra masks to

GC

4-123

extended

support fragmented ACL entries

 

 

fragment-auto-mask

 

 

 

 

 

 

 

permit, deny

Filters packets matching a specified source

STD-A

4-124

 

IP address

CL

 

 

 

 

 

permit, deny

Filters packets meeting the specified

EXT-A

4-125

 

criteria, including source and destination IP

CL

 

 

address, TCP/UDP port number, protocol

 

 

 

type, and TCP control code

 

 

 

 

 

 

show ip access-list

Displays the rules for configured IP ACLs

PE

4-128

 

 

 

 

access-list ip

Changes to the mode for configuring access

GC

4-129

mask-precedence

control masks

 

 

 

 

 

 

mask

Sets a precedence mask for the ACL rules

IP-Mask

4-130

 

 

 

 

show access-list ip

Shows the ingress or egress rule masks for

PE

4-133

mask-precedence

IP ACLs

 

 

 

 

 

 

ip access-group

Adds a port to an IP ACL

IC

4-134

 

 

 

 

show ip access-group

Shows port assignments for IP ACLs

PE

4-134

 

 

 

 

map access-list ip

Sets the CoS value and corresponding

IC

4-135

 

output queue for packets matching an ACL

 

 

 

rule

 

 

 

 

 

 

show map

Shows CoS value mapped to an access list

PE

4-136

access-list ip

for an interface

 

 

 

 

 

 

match access-list ip

Changes the 802.1p priority, IP

IC

4-137

 

Precedence, or DSCP Priority of a frame

 

 

 

matching the defined rule (i.e., also called

 

 

 

packet marking)

 

 

 

 

 

 

show marking

Displays the current configuration for

PE

4-138

 

packet marking

 

 

 

 

 

 

4-122

Page 414
Image 414
SMC Networks SMC6824M manual IP ACLs, IP ACL Commands

SMC6824M specifications

The SMC Networks SMC6824M is a robust and reliable managed switch that caters to the needs of small to mid-sized businesses, as well as enterprise environments. This switch is designed to provide enhanced performance, scalability, and security for network infrastructures that require efficient traffic management and comprehensive control.

One of the key features of the SMC6824M is its 24 10/100/1000BASE-T ports, which offer lightning-fast Ethernet connectivity. These ports are capable of auto-negotiation, allowing devices to automatically adjust their settings for optimal performance, making it easier to integrate various hardware into existing networks. Additionally, the switch includes four Gigabit SFP slots for fiber uplinks, which allow for extended connectivity options and improved network design.

The SMC6824M employs advanced Layer 2 and Layer 3 functionalities, giving network administrators the tools they need to manage their networks effectively. It supports features like VLAN (Virtual Local Area Network) support and Quality of Service (QoS), ensuring efficient bandwidth management and enhanced performance for critical applications. Through VLAN segmentation, it can isolate network traffic for different departments or functions, enhancing security and reducing congestion.

The switch also offers comprehensive network management capabilities through SNMP (Simple Network Management Protocol) and a web-based interface, enabling easy configuration, monitoring, and troubleshooting. The SMC6824M includes support for port mirroring, which is important for diagnostics and monitoring network performance.

Another significant characteristic of the SMC6824M is its redundancy features, which include IEEE 802.1d Spanning Tree Protocol (STP) to prevent loops and provide network resilience. This is essential for maintaining continuous operation, especially in dynamic environments where network availability is critical.

In terms of security, the SMC6824M supports 802.1X port-based authentication, ensuring that only authorized devices gain access to the network. This feature is crucial for protecting sensitive data and maintaining the integrity of the network.

Overall, the SMC Networks SMC6824M is a versatile and feature-rich managed switch that delivers the performance and flexibility required to support growing networks. Its combination of layer management, security features, and user-friendly interface makes it an excellent choice for organizations looking to enhance their network infrastructure.