<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Blocking TCP/IP Ports with ProCurve Manager in Switches, Hubs, and Modems</title>
    <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648387#M22861</link>
    <description>Thanks for all the responses, from what I've been reading in the manual and looking at on the switches I can only apply an ACL to a port on the 5400 which will edit traffic going through that port.  As the 2520 don't have ACL natively I'm guessing that you can't push an ACL onto the individual ports of the 2520?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks</description>
    <pubDate>Thu, 24 Jun 2010 08:18:42 GMT</pubDate>
    <dc:creator>Phil Barnett</dc:creator>
    <dc:date>2010-06-24T08:18:42Z</dc:date>
    <item>
      <title>Blocking TCP/IP Ports with ProCurve Manager</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648382#M22856</link>
      <description>Hi there&lt;BR /&gt;&lt;BR /&gt;We have just upgraded our network with a HP 5406ZL as our Core switch with edge switches consisting of the 2510 and 2520 range. We were told when we ordered all of the kit that the switches and ProCurve Manager would allow us to block certain ports from being used, e.g the ports that iTunes uses.&lt;BR /&gt;&lt;BR /&gt;We have been told by someone from the same company that you can't limit the ports in this way and we can't find the options because we have a severe lack  of knowledge with ProCurve Manager.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Could anyone shine some light on this?&lt;BR /&gt;</description>
      <pubDate>Wed, 16 Jun 2010 10:04:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648382#M22856</guid>
      <dc:creator>Phil Barnett</dc:creator>
      <dc:date>2010-06-16T10:04:17Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking TCP/IP Ports with ProCurve Manager</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648383#M22857</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;There's no functionality within PCM that would do that for you that I'm aware of (I'm sure someone else on the forum can confirm/correct this).&lt;BR /&gt;The only method that'd you would have to do this would be to create ACLs for the various vlans that you want to restrict traffic on. You could then use PCM to push these ACLs out to the switches but it wouldn't write them for you.</description>
      <pubDate>Wed, 16 Jun 2010 12:26:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648383#M22857</guid>
      <dc:creator>Mohammed Faiz</dc:creator>
      <dc:date>2010-06-16T12:26:02Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking TCP/IP Ports with ProCurve Manager</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648384#M22858</link>
      <description>Thanks for the response, would an ACL be able to limit traffic to a particular application on a VLAN?  I don't know much on ACLs.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks again</description>
      <pubDate>Thu, 17 Jun 2010 06:16:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648384#M22858</guid>
      <dc:creator>Phil Barnett</dc:creator>
      <dc:date>2010-06-17T06:16:01Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking TCP/IP Ports with ProCurve Manager</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648385#M22859</link>
      <description>As Faiz says, there is no direct way to address this. &lt;BR /&gt;&lt;BR /&gt;However, there is a feature in PCM, where you can create a policy to turn off/on a port(or group of ports), based on criteria's like&lt;BR /&gt; - generation of particular event&lt;BR /&gt; - scheduled to execute in a periodic manner.&lt;BR /&gt;&lt;BR /&gt;Leveraging this, possibly we could meet your requirement to some extent by determining if the end-user connected to the port exibits certain behaviour which would cause an event to be generated at switch ( and PCM being a trap-listener would get notified ). Once such an event happens, you could configure the Port on/off policy ("Portsettings:Enable/Disable Port) to turn off the required port(s).&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Check the admin Guide @&lt;BR /&gt;&lt;A href="http://cdn.procurve.com/training/Manuals/PCM-AdminGuide-Jan2010-5990-8850.pdf" target="_blank"&gt;http://cdn.procurve.com/training/Manuals/PCM-AdminGuide-Jan2010-5990-8850.pdf&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;for various features, especially the section on Policy Manager.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;Javed&lt;BR /&gt;&lt;BR /&gt;ps:-Noticed that you have joined recently and hence thought will share an important the ettique followed in the forum - assign points on scale (1-10) to people trying to help; its an appreciation for the time they spend in responding to your questions</description>
      <pubDate>Thu, 17 Jun 2010 08:25:25 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648385#M22859</guid>
      <dc:creator>Javed Padinhakara</dc:creator>
      <dc:date>2010-06-17T08:25:25Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking TCP/IP Ports with ProCurve Manager</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648386#M22860</link>
      <description>An ACL would allow you to limit traffic on a port (and in certain very specific cases, protocol) basis.&lt;BR /&gt;So for example here's a line from an ACL that allows DNS traffic from a particular server:&lt;BR /&gt;&lt;BR /&gt;permit udp 0.0.0.0 255.255.255.255 192.168.10.10 0.0.0.0 eq 53&lt;BR /&gt;&lt;BR /&gt;Check out the chapter on ACLs in the manual, it'll explain them much better than I can :)&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://cdn.procurve.com/training/Manuals/3500-5400-6200-6600-8200-ASG-Mar10-10-ACLs.pdf" target="_blank"&gt;http://cdn.procurve.com/training/Manuals/3500-5400-6200-6600-8200-ASG-Mar10-10-ACLs.pdf&lt;/A&gt;</description>
      <pubDate>Thu, 17 Jun 2010 13:22:16 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648386#M22860</guid>
      <dc:creator>Mohammed Faiz</dc:creator>
      <dc:date>2010-06-17T13:22:16Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking TCP/IP Ports with ProCurve Manager</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648387#M22861</link>
      <description>Thanks for all the responses, from what I've been reading in the manual and looking at on the switches I can only apply an ACL to a port on the 5400 which will edit traffic going through that port.  As the 2520 don't have ACL natively I'm guessing that you can't push an ACL onto the individual ports of the 2520?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks</description>
      <pubDate>Thu, 24 Jun 2010 08:18:42 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/blocking-tcp-ip-ports-with-procurve-manager/m-p/4648387#M22861</guid>
      <dc:creator>Phil Barnett</dc:creator>
      <dc:date>2010-06-24T08:18:42Z</dc:date>
    </item>
  </channel>
</rss>

