Huawei Quidway S3700 Series Configuration Manual page 255

Hide thumbs Also See for Quidway S3700 Series:
Table of Contents

Advertisement

Quidway S3700 Series Ethernet Switches
Configuration Guide - Security
# Configure the traffic behavior b_rd to reject packets.
[Quidway] traffic behavior b_rd
[Quidway-behavior-b_rd] deny
[Quidway-behavior-b_rd] quit
Step 6 Configure traffic policies.
# Configure the traffic policy p_market and associate the traffic classifier c_market and the
traffic behavior b_market with the traffic policy.
[Quidway] traffic policy p_market
[Quidway-trafficpolicy-p_market] classifier c_market behavior b_market
[Quidway-trafficpolicy-p_market] quit
# Configure the traffic policy p_rd and associate the traffic classifier c_rd and the traffic
behavior b_rd with the traffic policy.
[Quidway] traffic policy p_rd
[Quidway-trafficpolicy-p_rd] classifier c_rd behavior b_rd
[Quidway-trafficpolicy-p_rd] quit
Step 7 Apply the traffic policy.
# Apply the traffic policy p_market to Ethernet 0/0/2.
[Quidway] interface ethernet 0/0/2
[Quidway-Ethernet0/0/2] traffic-policy p_market inbound
[Quidway-Ethernet0/0/2] quit
# Apply the traffic policy p_rd to Ethernet 0/0/3.
[Quidway] interface ethernet 0/0/3
[Quidway-Ethernet0/0/3] traffic-policy p_rd inbound
[Quidway-Ethernet0/0/3] quit
Step 8 Verify the configuration.
# Check the configuration of ACL rules.
<Quidway> display acl all
Total nonempty ACL number is 2
Advanced ACL 3002, 1 rule
Acl's step is 5
rule 5 deny ip source 10.164.2.0 0.0.0.255 destination 10.164.9.9 0 time-range
satime (Inactive)
Advanced ACL 3003, 1 rule
Acl's step is 5
rule 5 deny ip source 10.164.3.0 0.0.0.255 destination 10.164.9.9 0 time-range
satime (Inactive)
# Check the configuration of the traffic classifier.
<Quidway> display traffic classifier user-defined
User Defined Classifier Information:
# Check the configuration of the traffic policy.
<Quidway>
User Defined Traffic Policy Information:
Issue 01 (2011-07-15)
Classifier: c_market
Operator: AND
Rule(s) : if-match acl 3002
Classifier: c_rd
Operator: AND
Rule(s) : if-match acl 3003
display traffic policy user-defined
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
10 ACL Configuration
242

Advertisement

Table of Contents
loading

Table of Contents