Verifying The Configuration; Troubleshooting Connection Limits; Acls In The Connection Limit Rules With Overlapping Segments - HP MSR Series Configuration Manual

Hpe flexnetwork msr router series
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

[Router] connection-limit policy 2
# Configure connection limit rule 1 to permit a maximum of 100 connections from each host matching
ACL 3000. When the number of connections exceeds 100, new connections cannot be established
until the number drops below 90.
[Router-connection-limit-policy-2] limit 1 acl 3000 per-source amount 100 90
[Router-connection-limit-policy-2] quit
# Apply connection limit policy 1 globally.
[Router] connection-limit apply global policy 1
# Apply connection limit policy 2 to inbound interface GigabitEthernet 2/0/1.
[Router] interface gigabitethernet 2/0/1
[Router-GigabitEthernet2/0/1] connection-limit apply policy 2
[Router-GigabitEthernet2/0/1] quit

Verifying the configuration

# Display information about the connection limit policy.
[Router] display connection-limit policy 1
IPv4 connection limit policy 1 has been applied 1 times, and has 2 limit rules.
Limit rule list:
Policy
Rule
------------------------------------------------------------
1
Applied list:
Global
[Router] display connection-limit policy 2
IPv4 connection limit policy 2 has been applied 1 times, and has 1 limit rules.
Limit rule list:
Policy
Rule
------------------------------------------------------------
2
Applied list:
GigabitEthernet2/0/1

Troubleshooting connection limits

ACLs in the connection limit rules with overlapping segments

Symptom
A connection limit policy has two rules. Rule 1 sets the upper limit to 10 for the connections from each
host on segment 192.168.0.0/24. Rule 2 sets the upper limit to 100 for the connections from
192.168.0.100/24.
<Router> system-view
[Router] acl basic 2001
[Router-acl-ipv4-basic-2001] rule permit source 192.168.0.0 0.0.0.255
StatType
HiThres
1
--
100000
2
Dst
10000
StatType
HiThres
1
Src
LoThres
ACL
95000
3000
9800
3001
LoThres
ACL
100
90
3000
468

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents