Manage ACLs

You can configure ACLs to control network accesses and ensure the security of applications on VMs.

An ACL has the following main contents:

To apply an ACL to a VM, configure a port profile for the VM, and bind the ACL to the port profile. For more information about port profiles, see "Manage port profiles." For more information about VM network settings, see "Add a VM" or "Edit a VM."

Restrictions and guidelines

ACLs used by port profiles cannot be deleted.

If none of IP address and mask or none of MAC address and mask is specified in an ACL, the ACL applies to all IP addresses or MAC addresses.

Add an ACL

  1. On the top navigation bar, click System, and then select Security Management > ACLs from the navigation pane.

  1. Click Add.

  1. Configure the ACL parameters as described in "Parameters."

  1. Click Add Rule.

  1. Configure the rule parameters as described in "Parameters."

  1. To edit the priorities of the ACL rules, click Edit Priority, editing the priorities of the ACL rules by dragging the rules to arrange their orders, and then click OK.

  1. Click OK.

Edit an ACL

  1. On the top navigation bar, click System, and then select Security Management > ACLs from the navigation pane.

  1. Select an ACL, and then click Edit.

  1. Edit the ACL parameters as described in "Parameters."

  1. Click OK.

Delete ACLs

  1. On the top navigation bar, click System, and then select Security Management > ACLs from the navigation pane.

  1. Select one or more ACLs, and then click Delete.

  1. In the dialog box that opens, click OK.

Parameters

If you select IP for the ACL Type parameter, configure the following parameters:

If you select Layer 2 for the ACL Type parameter, configure the following parameters: