ACL Port Limit

ACL Port Limit

ACL Port Limit
ACL Port Limit
Yesterday
Model: TL-SG3428XMP  
Hardware Version: V1
Firmware Version: 1.0.24

There seems to be a limit to the port range than can be configure on a IP-Port Group

/

That limit seems to be 25534 ports, is this a known limitation/bug?

 

It seems setting up an ACL to allow all non privileged ports 1024-65535 simply cannot be done with a single group, the rule just fails to let any traffic through, eg setting to 40002-65534 works, increasing that group by on digit breaks the rule (400001-65534 fails)

 

To setup a rule for all non-priv ports I had to do this with 5 port ranges.

 

1024-10000

10001-30000

30001-50000

50001-60000

60001-65535

 

Which just seems a bit amateurish, any chance this will be fixed?

 

Thanks,

 

Toby

  0      
  0      
#1
Options
1 Reply
Re:ACL Port Limit
17 hours ago - last edited 17 hours ago

  @Sc0th 

Thank you for your post. The current setup is as described. Regarding your requirement, I will forward it to the relevant department. Here is another viable approach:

If you only need to “allow high ports,” invert the logic:
– Deny 0–1023
– Permit any (implicit or explicit)

This uses only two rules and completely avoids the port-range restriction.

  0  
  0  
#2
Options

Information

Helpful: 0

Views: 220

Replies: 1