EasyManua.ls Logo

Extreme Networks Summit WM3000 Series - Page 324

Extreme Networks Summit WM3000 Series
513 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Controller Security
Summit WM3000 Series Controller System Reference Guide324
ACLs - existing access lists
Associated Rules - allow/deny rules
The ACLs field displays the list of ACLs currently associated with the controller. An ACL contains an
ordered list of ACEs. Each ACE specifies a permit or deny designation and a set of conditions the
packet must satisfy to match the ACE. Because the controller stops testing conditions after the first
match, the order of conditions in the list is critical.
6 If an existing ACL no longer satisfies controller access control requirements, select it from amongst
the existing ACLs and click the Delete button.
7 Use the Add button (within the ACLs field) to add an additional ACL. For more information, see
“Adding a New ACL” on page 324.
8 To reset the Hit Count number, click the Clear button.
9 Refer to the Associated Rules field to assess the rules and precedence associated with each ACL. If
necessary, rules and can be added or existing rules modified. For more information, see “Adding a
New ACL Rule” on page 325.
Adding a New ACL
When a packet is received by the controller, the controller compares the packet against the ACL to
verify the packet has the required permissions to be forwarded. Often, ACLs need to be added as client
permission changes during controller operation.
To create a new ACL: