访问控制列表在网络访问控制、网络流量识别和网络策略实施等方面起着重要的作用,访问控制列表的设计和部署也对网络性能产生较大的影响。为降低数据包访问控制的延迟、提高网络传输效率,该文对比了在不同的网络层次应用访问控制列表的2种方法。通过数学分析2种方法的数据包传输效率,发现网络负载不同会对网络性能造成不同的影响,运用合理可以优化网络性能。实验和数据结果分析验证了2种方法对网络性能的影响,为网络优化提供了参考。
Access control lists play an important role in network access control, network traffic identification and network policy enforcement. The design and deployment of access control lists has significant impacts on network performance. Two methods for application of access control lists in different network levels were compared to reduce the packet delay in access control and increase network transmission efficiencies. Packet transmission efficiencies when using the two methods were mathematically analyzed to show that different network loads have different impacts on network performance and that the network performance can be optimized with reasonable application. Experiments and data analyses verify the impact of the two methods on network performance, which provides a reference for network optimization.