- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
Re: M4300 ACL's
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello,
I would like to create an ACL on the web interface to allow traffic from client to licensing server on a particular port.
Please see the attached screenshot and let me know if it is right?
Thanks,
Sravan
Solved! Go to Solution.
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @spopuri
Welcome to Community!
Do you want to only allow DIP=10.3.200.40 and UDP D-Port from 27000~27009 packet fowarding on the binding port? But this is only for Client->Server direction, so what about Server->Client direction? Allow or dely? Currently your config ACL will deny all packet that from Server->Client direction, is it your expected behavior?
If you want to allow both two direction traffic, you can add one more rule that permit with SIP=10.3.200.40 and UDP S-Port from 27000~27009(need you confirm if it's match your traffic that from Server->Client), then bind this ACL to the port.
Regards,
Eric
All Replies
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @spopuri
Welcome to Community!
Do you want to only allow DIP=10.3.200.40 and UDP D-Port from 27000~27009 packet fowarding on the binding port? But this is only for Client->Server direction, so what about Server->Client direction? Allow or dely? Currently your config ACL will deny all packet that from Server->Client direction, is it your expected behavior?
If you want to allow both two direction traffic, you can add one more rule that permit with SIP=10.3.200.40 and UDP S-Port from 27000~27009(need you confirm if it's match your traffic that from Server->Client), then bind this ACL to the port.
Regards,
Eric
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Re: M4300 ACL's
Hello @Retired_Member
I have another question, If I write ACL rules to allow only port specific traffic. Will it block all other traffic by default?
Thanks,
Sravan
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content