ACFP Configuration Example
2197
Configure the ACFP policy through MIB browser to send information to Device,
where the client index is 1, policy index is 2, the policy inbound interface is
Ethernet 1/2 (by setting the node h3cAcfpPolicyInIfIndex), and the other
parameters adopt the default values.
# Configure the ACFP rule.
Apply the ACFP rule through MIB Browser to send information to Device, where
the client index is 1, policy index is 2, the action is permit (by setting the node
h3cAcfpRuleAction), the packets whose source IP address is 192.168.1.1 are
matched (by setting the node h3cAcfpRuleSrcMAC), the source IP mask is
255.255.255.0 (by setting the node h3cAcfpRuleSrcIPMask), and the other
parameters adopt the default values.
Apply Configure the ACFP rule through MIB browser to send information to
Device, where the client index is 1, policy index is 2, the action is deny (by setting
the node h3cAcfpRuleAction), the packets whose source IP address is 192.168.1.2
are matched (by setting the node h3cAcfpRuleSrcMAC), the source IP mask is
255.255.255.0 (by setting the node h3cAcfpRuleSrcIPMask), and the other
parameters adopt the default values.
Verify the configuration.
■
Use the ping command to verify the connectivity between Host A and Host C,
Host B and Host C. The test results show that Host C can be successfully pinged on
Host A and that Host C cannot be successfully pinged on Host B.