Use this task to configure, edit, or delete EX3500 MAC ACL policy rules.
If you want to add, edit, or delete a rule for an existing EX3500 MAC ACL policy, go to Policies > Wireless Firewall > MAC ACL.
Select adjacent to the target MAC ACL policy, then select the EX3500 MAC ACL tab. Choose from the following actions:
Parameter | Description |
---|---|
Allow | Every EX3500 MAC ACL firewall rule is made up of matching
criteria rules. The Allow action defines what to do with the
packet if it matches the specified criteria. The following
actions are supported:
|
VLAN ID | Enter a VLAN ID (1 – 4094) that is representative of the shared SSID each user employs to interoperate within the network (once authenticated by the local RADIUS server). |
VLAN Mask | Enter a VLAN ID bit mask value. |
Source and Destination MAC | Enter both Source MAC and Destination MAC addresses. Access points use the source MAC address and destination MAC address as basic matching criteria. Provide a subnet mask if using a mask. |
Ether Type |
Specify an Ether Type. An Ether Type is a two-octet field within an Ethernet frame. It is used to indicate which protocol is encapsulated in the payload of an Ethernet frame. Select a value in the range 0 – 65535. This parameter is enabled by default. The default value is 1. |
Ether Mask | Specify the Ether Mask. Select a value in the range 0 – 65535. This field is enabled by default. The default value is 1. |
Packet Type | Identify the Packet Type. Options are:
|
Time Range | Select a Time
Range during which this ACL is to be
enabled. The time range must be predefined through CLI using
the command ex3500
time-range <TIMERANGE-NAME> . |
Precedence | Specify a Precedence for this MAC firewall rule. Enter a value in the range 1 – 5000. Rules with lower precedence values are always applied first to packets. |
Note
You cannot restore default settings after applying or saving changes.Note
This does not permanently save the settings you configured. If you perform a Reload (warm reboot), applied settings will be lost.Note
If you do not select Apply or Save, the settings that you configured are not saved when you move away from the configuration window.