NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

bwc_bl3h's avatar
bwc_bl3h
Initiate
Dec 21, 2020
Solved

ACL failing on Smart Managed Pro switch

Hello,

I am trying to create an ACL that will allow HTTP access to a web server on TCP port 80 from anywhere and to TCP port 9999 from internal network only. The server is on switch port 8. I started with the wizard and added sequence 3 in advanced. I am using this:

 

Sequence 1:

Action: Permit
Match Every: False
Protocol Type: 6 (TCP)
Destination L4 Port Action: Equal
Destination L4 Port: www-http

 

Sequence 2:

Action: Permit
Match Every: False
Protocol Type: 17 (UDP)
Destination L4 Port Action: Equal
Destination L4 Port: www-http

 

Sequence 3:

Action: Permit
Match Every: False
Protocol Type: 6 (TCP)

Source IP Address: 192.168.69.8

Source IP Mask: 0.0.0.255
Destination L4 Port Action: Equal
Destination L4 Port: 9999

 

In the wizard I click bind to switch port 8 and save and I can no longer visit the server in a browser on 80 nor telnet to port 80 or 9999 (all is working before ACL put in place).

 

Please let me know how I can set this up correctly, thanks!!

  • I was adding the ACL to the port the www server was plugged into - this was the error. The rules only apply to INBOUND traffic - I applied the rule to the port that the cable modem is plugged into and it filtered exactly as expected for the www server. 

1 Reply

Replies have been turned off for this discussion
  • I was adding the ACL to the port the www server was plugged into - this was the error. The rules only apply to INBOUND traffic - I applied the rule to the port that the cable modem is plugged into and it filtered exactly as expected for the www server. 

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More