Netgear MS510TXPP User Manual - Page 286

Source L4 port, Destination L4 port

Page 286 highlights

Smart Managed Pro Switches MS510TX and MS510TXPP • Logging. If you select the Deny radio button, you can enable logging for the ACL by selecting the Enable radio button. (Logging is subject to resource availability in the device.) If the access list trap flag is also enabled, periodic traps are generated, indicating the number of times this rule was evoked during the report interval. A fixed five-minute report interval is used for the switch. A trap is not issued if the ACL rule hit count is zero for the current interval. • Match Every. Select whether all packet must match the selected IPv6 ACL rule: - Disable. Not all packets need to match the selected IPv6 ACL rule. You can configure other match criteria on the page. - Enable. All packets must match the selected IPv6 ACL rule and are either permitted or denied. In this case, you cannot configure other match criteria on the page. • Protocol Type. Specify the IPv6 protocol type in one of the following ways: - From the Protocol Type menu, select IPv6, ICMPv6, TCP, or UDP. - From the Protocol Type menu, select Other, and in the associated field, specify an integer ranging from 0 to 255. This number represents the IPv6 protocol. • Source Prefix and Prefix Length. In the Source Prefix field and Prefix Length field, enter the IPv6 prefix combined with the IPv6 prefix length of the network or host from which the packet is being sent. The valid range for the prefix length is 0-128. • Source L4 port. The options are available only when the protocol is set to TCP or UDP. Use the source L4 port option to specify relevant matching conditions for L4 port numbers in the IPv6 ACL rule. The source port protocols are domain, echo, ftp, ftpdata, http, smtp, snmp, telnet, tftp, and www. Each of these values translates into its equivalent port number. Select Other from the menu to enter a port number from 0 to 65535. • Destination Prefix and Prefix Length. In the Destination Prefix field and Prefix Length field, enter the IPv6 prefix combined with the IPv6 prefix length of the network or host to which the packet is being sent. The valid range for the prefix length is 0-128. • Destination L4 port. The options are available only when the protocol is set to TCP or UDP. Use the source L4 port option to specify relevant matching conditions for L4 port numbers in the IPv6 ACL rule. The source port protocols are domain, echo, ftp, ftpdata, http, smtp, snmp, telnet, tftp, and www. Each of these values translates into its equivalent port number. Select Other from the menu to enter a port number from 0 to 65535. • IPv6 DSCP Service. Specify the IP DiffServ Code Point (DSCP) field. This is an optional configuration. Select one of the IP DiffServ Code Point (DSCP) keywords from the menu. The DSCP is defined as the high-order 6 bits of the service type octet in the IP header. To specify Manage Device Security 286 User Manual

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355

Smart Managed Pro Switches MS510TX and MS510TXPP
Manage Device Security
User Manual
286
Logging
. If you select the
Deny
radio button, you can enable logging for the ACL by
selecting the
Enable
radio button. (Logging is subject to resource availability in the
device.)
If the access list trap flag is also enabled, periodic traps are generated, indicating the
number of times this rule was evoked during the report interval. A fixed five-minute
report interval is used for the switch. A trap is not issued if the ACL rule hit count is
zero for the current interval.
Match Every
. Select whether all packet must match the selected IPv6 ACL rule:
-
Disable
. Not all packets need to match the selected IPv6 ACL rule. You can
configure other match criteria on the page.
-
Enable
. All packets must match the selected IPv6 ACL rule and are either
permitted or denied. In this case, you cannot configure other match criteria on the
page.
Protocol Type
. Specify the IPv6 protocol type in one of the following ways:
-
From the
Protocol Type
menu, select
IPv6
,
ICMPv6
,
TCP
, or
UDP
.
-
From the
Protocol Type
menu, select
Other
, and in the associated field, specify
an integer ranging from 0 to 255. This number represents the IPv6 protocol.
Source Prefix
and
Prefix Length
. In the
Source Prefix
field and
Prefix Length
field,
enter the IPv6 prefix combined with the IPv6 prefix length of the network or host from
which the packet is being sent. The valid range for the prefix length is 0–128.
Source L4 port
. The options are available only when the protocol is set to TCP or UDP.
Use the source L4 port option to specify relevant matching conditions for L4 port
numbers in the IPv6 ACL rule.
The source port protocols are
domain
,
echo
,
ftp
,
ftpdata
,
http
,
smtp
,
snmp
,
telnet
,
tftp
, and
www
. Each of these values translates into its equivalent port number.
Select
Other
from the menu to enter a port number from 0 to 65535.
Destination Prefix
and
Prefix Length
. In the
Destination Prefix
field and
Prefix
Length
field, enter the IPv6 prefix combined with the IPv6 prefix length of the network
or host to which the packet is being sent. The valid range for the prefix length is
0–128.
Destination L4 port
. The options are available only when the protocol is set to TCP or
UDP. Use the source L4 port option to specify relevant matching conditions for L4 port
numbers in the IPv6 ACL rule.
The source port protocols are
domain
,
echo
,
ftp
,
ftpdata
,
http
,
smtp
,
snmp
,
telnet
,
tftp
, and
www
. Each of these values translates into its equivalent port number.
Select
Other
from the menu to enter a port number from 0 to 65535.
IPv6 DSCP Service
. Specify the IP DiffServ Code Point (DSCP) field. This is an
optional configuration.
Select one of the IP DiffServ Code Point (DSCP) keywords from the menu. The DSCP
is defined as the high-order 6 bits of the service type octet in the IP header. To specify