Activating Acl; Displaying And Debugging Acl - 3Com 400 Family Configuration Manual

Table of Contents

Advertisement

Table 138 Defining the User-defined ACL
Operation
Enter user-defined ACL view (from System
View)
Add a sub-item to the ACL (from
User-defined ACL View)
Delete a sub-item from the ACL (from
User-defined ACL View)
Delete one ACL or all the ACL (from System
View)
rule-string
hexadecimal character string with even digits of characters.
used to extract the packet information. Here, rule-mask is rule mask, used for
logical AND operation with bytes from the data packets and corresponding bytes
from the rule-mask and offset determines the start location of the rule-mask in the
packet.
compares it with the user-defined rule-string to identify and process the matched
packets.

Activating ACL

The defined ACL can be active after being activated globally on the Switch. This
function is used to activate the ACL filtering or classify the data transmitted by the
hardware of the Switch.
You can use the following command to activate the defined ACL.
Perform the following configuration in Ethernet Port View.
Table 139 Activate ACL
Operation
Activate an ACL
Deactivate an ACL undo packet-filter { inbound | outbound } {
Displaying and
After the above configuration, execute
Debugging ACL
the running of the ACL configuration, and to verify the effect of the configuration.
Execute
Table 140 Display and Debug ACL
Operation
Display the detail information about the
ACL
Display the information about the ACL
running state
Clear ACL counters
is a character string defined by a user. It is made up of a
extracts a character string from the packet and
rule-mask offset
Command
packet-filter { inbound | outbound } { user-group
acl_number [ rule rule ] | ip-group acl_number [ rule
rule [ link-group acl_number rule rule ] ] |
link-group acl_number [ rule rule ] }
user-group acl_number [ rule rule ] | ip-group
acl_number [ rule rule [ link-group acl_number
rule ] ] | link-group acl_number [ rule rule ] }
command in User View to clear the statistics of the ACL module.
reset
Brief Introduction to ACL
Command
acl number acl_number [
match-order { config | auto } ]
rule [ rule_id ] { permit | deny
} { rule_string rule_mask offset
}&<1-8> ]
undo rule rule_id
undo acl { number acl_number |
all }
command in all views to display
display
Command
display acl { all | acl_number }
display packet-filter { interface {
interface_name | interface_type
interface_num } | unitid unit_id }
reset acl counter { all | acl_number }
135
is
rule-mask offset
rule

Advertisement

Table of Contents
loading

Table of Contents