ACL
MAC Based ACL
SPS208G/SPS224G4/SPS2024 Service Provider Switches User Guide 103
6
• Match DSCP — Matches the packet DSCP value to the ACL. Either the
DSCP value or the IP Precedence value is used to match packets to ACLs.
The possible field range is 0-63.
• Match IP Precedence — Indicates matching ip-precedence with the packet
ip-precedence value. IP Precedence enables marking frames that exceed
CIR threshold. In a congested network, frames containing a higher are
discarded before frames with a lower DP.
STEP 3 Define the relevant fields.
STEP 4 Click Add To List. The ACL is defined, and it is listed in the IP Based ACL Table at
the bottom of the
IP Based ACL Screen
.
At the bottom of the
IP Based ACL Screen
, the table lists the defined ACLs. To
browse to a specific ACL entry, click the First, Previous, 1, 2, Next, and Last links
above the table.
To delete an ACL:
STEP 1 Click ACL > IP Based ACL. The
IP Based ACL Screen
opens.
STEP 2 In the IP Based ACL Table, select the ACL entry to delete.
STEP 3 Click Delete. The ACL entry is removed from the IP Based ACL Table and deleted
from the device.
MAC Based ACL
The
MAC Based ACL Screen
allows MAC- based ACLs to be defined. ACEs can
be added only if an ACL is not bound to an interface.
NOTE ACL configuration may take several minutes, depending on the device’s usage of
Ternary Content Addressable Memory (TCAM) resources.