Chapter 5: Managing Device Security | 181
FS728TP Smart Switch Software Administration Manual
IP Rules
Use the IP Rules page to define rules for IP-based standard ACLs. The access list definition
includes rules that specify whether traffic matching the criteria is forwarded normally or
discarded.
Note: There is an implicit “deny all” rule at the end of an ACL list. This
means that if an ACL is applied to a packet and if none of the explicit
rules match, then the final implicit “deny all” rule applies and the
packet is dropped.
To display the IP Rules page, click Security ACL, then click the Advanced IP Rules link.
To configure rules for an IP ACL:
1. To add an IP ACL rule, select the ACL ID to add the rule to, complete the fields
described in the following list, and click Add.
• Rule ID. Specify a number from 1–10 to identify the IP ACL rule. You can create up to
10 rules for each ACL.
• Action. Selects the ACL forwarding action, which is one of the following:
• Permit. Forwards packets which meet the ACL criteria.
• Deny. Drops packets which meet the ACL criteria.
• Assign Queue ID. Specifies the hardware egress queue identifier used to handle all
packets matching this ACL rule. Enter an identifying number from 0–7 in the
appropriate field.
• Match Every. Requires a packet to match the criteria of this ACL. Select True or
False from the drop down menu. Match Every is exclusive to the other filtering rules,
so if Match Every is True, the other rules on the screen are not available.