Manage Device Security
266
Insight Managed 8-Port Gigabit Ethernet Smart Cloud Switch with 2 SFP Fiber Ports
The previous figure does not show the rightmost fields.
8. Configure the following match criteria for the rule:
• Sequence Number. Enter a whole number in the range of 1 to 2147483647 that is
used to identify the rule.
An extended IP ACL can contain up to 50 rules.
• Action. Select the
ACL forwarding action, which is one of the following:
- Permit. Forward packets that meet the
ACL criteria.
- Deny. Drop packets that meet the
ACL criteria.
• Egress Queue. If the selection from the Action menu is Permit, select the hardware
egress queue identifier that is used to handle all packets matching this IP
ACL rule.
The range of queue IDs is 0 to 7.
• Logging. If the selection form the Action menu is Deny, you can enable logging for
the
ACL by selecting the Enable radio button. (Logging is subject to resource
availability in the device.)
If the access list trap flag is also enabled, periodic traps are generated, indicating the
number of times this rule was evoked during the report interval.
A fixed five-minute
report interval is used for the switch. A trap is not issued if the ACL rule hit count is
zero for the current interval.