Displaying And Debugging Acl - 3Com 7700 Configuration Manual

Hide thumbs Also See for 7700:
Table of Contents

Advertisement

Displaying and
Debugging ACL
Example: ACL
Configuration
After you configure ACL, execute the display command in all views to display the
running of the ACL configuration, and to verify the effect of the configuration.
Execute the reset command in user view to clear the statistics of the ACL module.
Table 9 Display and Debug ACL
Operation
Display the status of the time range display time-range [ all | name ]
Display the detail information
about the ACL
Display the ACL mode chosen by
the switch
Display the information about the
ACL running state
Clear ACL counters
The matched information of the display acl config command specifies the rules
treated by the switch's CPU. The matched information of the transmitted data by
the switch can be displayed with the display qos-info traffic-statistic command.
For a description of the syntax of these commands, see the Switch 7700
Command Reference Guide.
The interconnection between different departments on a company network is
implemented through the 100M ports of the Switch 7700. The payment query
server of the Financial Dept. is accessed through Ethernet1/0/1 (at 129.110.1.2).
The ACL must be properly configured to prevent departments other than the
Office of President from having access to the payment query server between 8:00
AM and 6:00 PM. The Office of President (at 129.111.1.2) can access the server
without limitation.
Figure 1 Access Control Configuration Example
Office of President
129.111.1.2
#3
#1
Switch
Financial Department
subnet address
Connected to
10.110.0.0
a router
Note: In the following configuration steps, only the commands related to ACL
configurations are listed.

Displaying and Debugging ACL

Command
display acl config { all | acl-number | acl-name }
display acl mode
display acl running-packet-filter { all | interface {
interface-name | interface-type interface-num } }
reset acl counter { all | acl-number | acl-name }
Pay query server
129.110.1.2
#4
#2
Administration Department
subnet address
10.120.0.0
193

Advertisement

Table of Contents
loading

Table of Contents