4.13.31 ingress-acl hybrid rule type-any
Purpose
This command sets the rule that the hybrid ingress ACL matches
Command Mode
Hybrid ingress ACL configuration mode
Syntax
rule <1-500>{permit | deny} any {[ether-type <1501-65535>][cos <0-7>][<vlan-id>[<vlan-ma
sk>]][<source-mac><smac-mask>| any][<dest-mac><dmac-mask>| any]}
Parameter Description
Parameter
<1-500>
permit
deny
any
ether-type <1501-65535>
cos <0-7>
<vlan-id>
<vlan-mask>
<source-mac>
<smac-mask>
any (third)
<dest-mac>
<dmac-mask>
any (four)
SJ-20130731155059-003|2013-11-27 (R1.0)
Description
Rule number.
If the condition matches, access is permitted.
If the condition matches, access is denied.
This rule only matches non-IPv6 packet. IPv6 packet ignores this
rule.
This rule is only valid for the packet with specified ether-type
value. Other packets ignore this rule. The range of ether-type is
1501–65535.
This rule is only valid for the cos-specified message. Ignore this
rule for other messages. The range of cos is 0 to 7.
This rule is only valid for messages with the specified VLAN ID.
Ignore this rule for other messages. The rule of VLAN ID is 1
to 4094.
Optional VLAN mask. The default value is 0xfff.
Source MAC address of the transmitted packet.
Source MAC mask.
The any keyword is used as the abbreviation of the source MAC
address 00.00.00.00.00.00 and the mask 00.00.00.00.00.00.
Destination MAC address of the transmitted packet.
Destination MAC mask.
The any keyword is used as the abbreviation of the destination
MAC address 00.00.00.00.00.00 and the mask 00.00.00.00.00.00.
4-241
Chapter 4 Service Configuration
non-IPv6
packet.
ZTE Proprietary and Confidential