4
ACL Application for Packet Filtering
When applying an ACL for packet filtering, go to these sections for information you are interested in:
Filtering Ethernet Frames
Filtering IPv4 Packets
Filtering IPv6 Packets
Configuring Packet Filtering Statistics Function
ACL Application Examples
You can apply an ACL to the inbound or outbound direction of an ethernet interface or VLAN interface
to filter received or sent packets such as Ethernet frames, IPv4 packets, and IPv6 packets.
Filtering Ethernet Frames
Follow these steps to apply an Ethernet frame header ACL to an interface to filter Ethernet frames:
To do...
Enter system view
Enter
interface
view
Apply an Ethernet frame
header ACL to the interface to
filter Ethernet frames
Filtering IPv4 Packets
Follow these steps to apply an IPv4 ACL to an interface to filter IPv4 packets:
To do...
Enter system view
Enter
interface
view
Apply a basic or advanced IPv4
ACL to the interface to filter
IPv4 packets
system-view
Enter Ethernet
interface interface-type
interface view
interface-number
Enter VLAN
interface vlan-interface
interface view
vlan-id
packet-filter { acl-number |
name acl-name } { inbound |
outbound }
system-view
Enter Ethernet
interface interface-type
interface view
interface-number
Enter VLAN
interface vlan-interface
interface view
vlan-id
packet-filter { acl-number |
name acl-name } { inbound |
outbound }
Use the command...
Use the command...
4-1
Remarks
—
Use either command
Required
By default, an interface does
not filter Ethernet frames.
Remarks
—
Use either command
Required
By default, an interface does
not filter IPv4 packets.