EasyManuals Logo

Digitalchina Networks DCS-3950 series User Manual

Digitalchina Networks DCS-3950 series
394 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #288 background imageLoading...
Page #288 background image
278
DCS-3950 series Ethernet switch manual
Switch(Config-Ethernet0/0/10)#exit
Switch(Config)#exit
Configuration result:
Switch#show firewall
Firewall is enabled.
Firewall default rule is to permit any packet.
Switch#show access-lists
access-list 110(used 1 time(s))
access-list 110 deny tcp 10.0.0.0 0.0.0.255 any-destination d-port 21
Switch#show access-group interface ethernet 0/0/10
interface name:Ethernet0/0/10
the ingress acl use in firewall is 110.
Scenario 2:
The user has the following configuration requirement: port 1/10 of the switch connects to
00-12-11-23-XX-XX segment, 802.3 is not desired for the user.
Configuration description:
a)Create a proper ACL
b)Configuring packet filtering function
c)Bind the ACL to the port
The configuration steps are listed below:
Switch(Config)#access-list 1100 deny 00-12-11-23-00-00 00-00-00-00-ff-ff
any-destination-mac untagged-802.3
Switch(Config)#access-list 1100 deny 00-12-11-23-00-00 00-00-00-00-ff-ff
any-destination-mac tagged-802.3
Switch(Config)#firewall enable
Switch(Config)#firewall default permit
Switch(Config)#interface ethernet 0/0/10
Switch(Config-Ethernet0/0/10)#ip access-group 1100 in
Switch(Config-Ethernet0/0/10)#exit
Switch(Config)#exit
Configuration result:
Switch#show firewall
Firewall is enabled.
Firewall default rule is to permit any packet.
Switch #show access-lists
access-list 1100(used 1 time(s))
access-list 1100 deny 00-12-11-23-00-00 00-00-00-00-FF-FF any-destination-mac
untagged-802.3
access-list 1100 deny 00-12-11-23-00-00 00-00-00-00-FF-FF any-destination-mac
tagged-802.3

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Digitalchina Networks DCS-3950 series and is the answer not in the manual?

Digitalchina Networks DCS-3950 series Specifications

General IconGeneral
BrandDigitalchina Networks
ModelDCS-3950 series
CategoryNetwork Router
LanguageEnglish