I have a problem where I cannot seem to restrict source mac addresses by a time range.

I have a TL-SG3210 with a time-range defined as 08:00-17:00 for each day of the week.

My ACL has 5 rules with individual source max ids (with masks set to FF-FF-FF-FF-FF-FF), time-range set to the above range and operation of Permit.

I have created a policy with the ACL in it

I have bound the Policy to all ports on the switch.

These are the only ACL settings within the switch.

The devices with the restricted MAC addresses can still access the network.

What am I doing wrong?