ProCurve 6200yl User's Guide Page 220

  • Download
  • Add to my manuals
  • Print
  • Page
    / 596
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 219
7-14
Configuring RADIUS Server Support for Switch Services
Configuring and Using RADIUS-Assigned Access Control Lists
Caution Regarding
the Use of Source
Routing
Source routing is enabled by default on the switch and can be used to override
ACLs. For this reason, if you are using ACLs to enhance network security, the
recommended action is to use the no ip source-route command to disable
source routing on the switch. (If source routing is disabled in the running-
config file, the show running command includes “no ip source-route” in the
running-config file listing.)
A given dynamic port ACL filters only the IP traffic entering
the switch from the authenticated client corresponding to
that ACL, and does not filter IP traffic inbound from other
authenticated clients.(The traffic source is not a
configurable setting.)
An RACL applied to inbound traffic on a VLAN filters all
routed IP traffic entering the switch through a port on that
VLAN, as well as any inbound traffic having a DA on the
switch itself. An RACL applied to outbound traffic on a VLAN
filters all routed IP traffic leaving the switch through a port
on that VLAN (and includes routed traffic generated by the
switch itself).
A VACL applied on a VLAN filters all IP traffic entering the
switch through a port on that VLAN.
A static port ACL applied on a port filters all traffic entering
the switch through that port.
Requires client authentication by a RADIUS server
configured to dynamically assign an ACL to the client port,
based on client credentials.
No client authentication requirement.
ACEs allow a counter (cnt) option that causes a counter to
increment when there is a packet match.
ACEs allow a log option that generates a log message
whenever there is a packet match with a “deny” ACE.
Dynamic Port ACLs Static Port and VLAN ACLs
Page view 219
1 2 ... 215 216 217 218 219 220 221 222 223 224 225 ... 595 596

Comments to this Manuals

No comments