Huawei Quidway S9300 Configuration Manual page 288

Terabit routing switch
Table of Contents

Advertisement

11 ACL Configuration
[Quidway] interface gigabitethernet 2/0/1
[Quidway-GigabitEthernet2/0/1] traffic-policy tp1 inbound
[Quidway-GigabitEthernet2/0/1] quit
Step 6 Verify the configuration.
# Check the configuration of ACL rules.
<Quidway> display acl 4000
Ethernet frame ACL 4000, 1 rule
Acl's step is 5
rule 5 deny source-mac 00e0-f201-0101 ffff-ffff-ffff dest-mac 0260-e207-0002 ff
ff-ffff-ffff(0 times matched)
# Check the configuration of the traffic classifier.
<Quidway> display traffic classifier user-defined
# Check the configuration of the traffic policy.
<Quidway>
User Defined Traffic Policy Information:
Policy: tp1
----End
Configuration Files
#
sysname Quidway
#
acl number 4000
rule 5 deny source-mac 00e0-f201-0101 ffff-ffff-ffff dest-mac 0260-e207-0002 ff
ff-ffff-ffff
#
traffic classifier tc1 operator or precedence 15
if-match acl 4000
#
traffic behavior tb1
deny
#
traffic policy tp1
classifier tc1 behavior tb1
#
interface GigabitEthernet2/0/1
traffic-policy tp1 inbound
#
return
11.5.4 Example for Configuring an ACL6
11-22
User Defined Classifier Information:
Classifier: tc1
Precedence: 15
Operator: OR
Rule(s) : if-match acl 4000
display traffic policy user-defined tp1
Classifier: default-class
Behavior: be
-none-
Classifier: tc1
Behavior: tb1
Deny
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
Quidway S9300 Terabit Routing Switch
Configuration Guide - Security
Issue 06 (2010–01–08)

Advertisement

Table of Contents
loading

Table of Contents