Chapter 12
| Security Measures
Access Control Lists
– 309 –
6. Click Apply.
Figure 199: Binding a Port to an ACL
Configuring
ACL Mirroring
After configuring ACLs, use the Security > ACL (Configure Interface – Add Mirror)
page to mirror traffic matching an ACL from one or more source ports to a target
port for real-time analysis. You can then attach a logic analyzer or RMON probe to
the target port and study the traffic crossing the source VLAN(s) in a completely
unobtrusive manner.
Command Usage
ACL-based mirroring is only used for ingress traffic. To mirror an ACL, follow these
steps:
1. Create an ACL as described in the preceding sections.
2. Add one or more mirrored ports to ACL as described under “Binding a Port to
an Access Control List” on page 308.
3. Use the Add Mirror page to specify the ACL and the destination port to which
matching traffic will be mirrored.
Parameters
These parameters are displayed:
◆ Port – Port identifier.
◆ ACL – ACL used for ingress packets.