Choose the menu ACL→Policy Binding→VLAN Binding to load the following page.

Figure11-14 Bind the policy to the VLAN

The following entries are displayed on this screen:

VLAN-Bind Config

Policy Name:

Select the name of the policy you want to bind.

VLAN ID:

Enter the ID of the VLAN you want to bind.

VLAN-Bind Table

Index:

Displays the index of the binding policy.

Policy Name:

Displays the name of the binding policy.

VLAN ID:

Displays the ID of the VLAN bound to the corresponding policy.

Direction:

Displays the binding direction.

Configuration Procedure:

Step

Operation

 

Description

 

 

 

 

1

Configure

effective

Required. On ACL→Time-Rangeconfiguration pages,

 

time-range

 

configure the effective time-ranges for ACLs.

 

 

 

 

2

Configure ACL rules

 

Required. On ACL→ACL Config configuration pages,

 

 

 

configure ACL rules to match packets.

 

 

 

 

3

Configure Policy

 

Required. On ACL→Policy Config configuration pages,

 

 

 

configure the policy to control the data packets those match

 

 

 

the corresponding ACL rules.

 

 

 

 

4

Bind the policy

to the

Required. On ACL→Policy Binding configuration pages,

 

port/VLAN

 

bind the policy to the port/VLAN to make the policy effective

 

 

 

on the corresponding port/VLAN.

 

 

 

 

11.5 Application Example for ACL

Network Requirements

1.The manager of the R&D department can access to the forum of the company and the Internet without any forbiddance. The MAC address of the manager is 00-64-A5-5D-12-C3.

2.The staff of the R&D department cannot access to the Internet during the working time but can visit the forum all day.

172

Page 182
Image 182
TP-Link TL-SG3424P manual Application Example for ACL,  VLAN-Bind Config, Enter the ID of the Vlan you want to bind

TL-SG3424P specifications

The TP-Link TL-SG3424P is a high-performance managed switch designed to meet the needs of small to medium-sized businesses. Offering 24 Gigabit Ethernet ports, this device is an ideal solution for improving network efficiency and ensuring seamless data transfer across multiple devices. The switch not only facilitates connectivity but also provides robust management features to enhance the performance and security of your network.

One of the standout features of the TL-SG3424P is its Power over Ethernet (PoE) capability, which allows it to deliver power and data over the same Ethernet cable. This feature is particularly beneficial for deploying devices such as IP cameras, VoIP phones, and wireless access points without the need for additional power sources. With a total power budget of 250W, the TL-SG3424P can support a diverse range of PoE devices, providing convenience and flexibility in deployment.

In terms of management, the TL-SG3424P offers a user-friendly web interface, allowing network administrators to configure and monitor the switch with ease. It supports advanced Layer 2 features, including VLANs, Quality of Service (QoS), and Link Aggregation. These features enhance network performance by optimizing traffic flow and prioritizing essential applications. The switch also includes comprehensive security features, such as Port Security and Access Control Lists (ACL), which help protect against unauthorized access and ensure data integrity.

The build quality of the TL-SG3424P is robust, designed to handle demanding network environments. It includes a fanless design, which ensures silent operation, making it suitable for office environments where noise can be a distraction. The metal chassis is durable and built for longevity, ensuring that the device will withstand rigorous usage over time.

Furthermore, the TL-SG3424P supports SNMP (Simple Network Management Protocol), allowing for centralized network monitoring and management. This makes it easier for IT teams to keep track of network health and performance, enabling timely interventions when necessary.

In conclusion, the TP-Link TL-SG3424P is a versatile and powerful managed switch that combines PoE capabilities with advanced network management features, making it a perfect choice for businesses looking to upgrade their network infrastructure. With its reliable performance and robust features, it provides an excellent solution for enhancing productivity and connectivity in any office setting.