Displaying And Debugging Acl - Huawei Quidway S3500 Series Operation Manual

Hide thumbs Also See for Quidway S3500 Series:
Table of Contents

Advertisement

Operation Manual - QoS/ACL
Quidway S3500 Series Ethernet Switches
For the MAC-MAC rule, the source and destination MAC addresses must be
configured in the same VLAN. That is, configure the same VLAN ID for the source
and destination MAC addresses in defining ACL.
For the rules of IP-any, any-IP, NET-any and any-NET, S3526 does not support
packet filtering of special protocols. You can only configure protocol type as IP (the
value of the parameter protocol in rule command can only be IP) in defining these
types of rules in S3526. Otherwise, error information will be returned when confirm
the rule.
IP-IP, MAC-MAC, MAC-PORT, PORT-PORT, PORT-MAC, IP-NET and NET-NET
rules will function on the two directions, that is, user defines a rule to filter packets
from source address to destination address, the rule will also filter the packets from
the destination address to source address. For the rules of IP-any, any-IP, NET-any,
any-NET, MAC-any, any-MAC, they only function on one direction which user
defined.
For S3526, S3526 FM, S3526 FS switches, parameter icmp-type is only supported
when user defines advance ACL. ICMP packet type and code (the parameter type
code in rule command) can't be configured. Otherwise the system will prompt the
configuration is not available.
The restrictions corresponding to each QoS function describe the ACL rule available
in configuring this function. Other ACL rules will not be used in implementing this
function in S3526. Otherwise, the system will return error prompts.
Define the ACL rules to be used in it first before implementing a QoS function.

1.2.4 Displaying and Debugging ACL

After the above configuration, execute display command in any view to display the
running of the ACL configuration, and to verify the effect of the configuration. Execute
reset command in user view to clear the statistics of the ACL module.
Table 1-10 Displaying and debugging ACL
Display the status of the time range
Display the detail information about the
ACL
Display the information about the ACL
running state
Clear ACL counters
Operation
Huawei Technologies Proprietary
1-10
Chapter 1 ACL Configuration
Command
display time-range { all | name }
display acl config { all | acl-number |
acl-name }
display acl running-packet-filter all
reset acl counter { all | acl-number |
acl-name }

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents