Кажется я понял в чем проблема.
Во втором правиле impb биндинг в режиме ацл отрабатывает раньше моих правил и дхцп скрининга.
Прошу кого нить из офф представителей прокомметнировать или сказать где ошибка.
Код:
Profile ID: 2 Profile name: Type: IPv4
MASK on
Source IP : 255.254.0.0
Dest IP : 255.254.0.0
Protocol ID : 0xFF
UserMask : 0xFFFFFFFF
Available HW Entries : 178
--------------------------------------------------------------------------------
Rule ID : 1 (auto assign) Ports: 1-52
Match on
Protocol ID : 6
User Mask : 0x8B Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 2 (auto assign) Ports: 1-52
Match on
Protocol ID : 6
User Mask : 0x1BD Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 3 (auto assign) Ports: 1-52
Match on
Protocol ID : 6
User Mask : 0xB35 Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 4 (auto assign) Ports: 1-52
Match on
Protocol ID : 6
User Mask : 0xE03 Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 5 (auto assign) Ports: 1-52
Match on
Protocol ID : 6
User Mask : 0x14ED Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 6 (auto assign) Ports: 1-52
Match on
Protocol ID : 6
User Mask : 0x14EE Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 7 (auto assign) Ports: 1-52
Match on
Protocol ID : 17
User Mask : 0x89 Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 8 (auto assign) Ports: 1-52
Match on
Protocol ID : 17
User Mask : 0x8A Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 9 (auto assign) Ports: 1-52
Match on
Protocol ID : 17
User Mask : 0x76C Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 10 (auto assign) Ports: 1-52
Match on
Protocol ID : 17
User Mask : 0xDD4 Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 11 (auto assign) Ports: 1-52
Match on
Protocol ID : 17
User Mask : 0xE76 Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 12 (auto assign) Ports: 1-52
Match on
Protocol ID : 17
User Mask : 0x14EB Mask : 0xFFFF
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 13 (auto assign) Ports: 1-48
Match on
Protocol ID : 17
User Mask : 0x430000 Mask : 0xFFFF0000
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 14 (auto assign) Ports: 1-52
Match on
Source IP : 10.10.0.0 Mask : 255.254.0.192
Dest IP : 10.10.0.0
Action:
Deny
--------------------------------------------------------------------------------
Rule ID : 15 (auto assign) Ports: 1-52
Match on
Source IP : 10.10.0.0
Dest IP : 255.255.255.255 Mask : 255.255.255.255
Action:
Deny
================================================================================
================================================================================
Profile ID: 513 Profile name: IMPB v4
MASK on
Source MAC : 00-00-00-00-00-00
Ethernet Type
Source IP : 0.0.0.0
Consumed HW Entries : 2
--------------------------------------------------------------------------------
Rule ID : 2 Ports: 1
Match on
Source MAC : F8-1A-67-AD-D5-63 Mask : FF-FF-FF-FF-FF-FF
Ethernet Type : 0x800
Source IP : 10.10.106.65 Mask : 255.255.255.255
Action:
Permit
--------------------------------------------------------------------------------
Rule ID : 511 Ports: 1-48
Match on
Source MAC : 00-00-00-00-00-00 Mask : 00-00-00-00-00-00
Ethernet Type : 0x800
Source IP : 0.0.0.0 Mask : 0.0.0.0
Action:
Deny
================================================================================
================================================================================
Profile ID: 532 Profile name: DHCP Server Screening
HW Resource shared with user profile ID: 2
Consumed HW Entries : 1
================================================================================