Huawei Quidway S8500 Series Command Manual page 636

Routing switches
Hide thumbs Also See for Quidway S8500 Series:
Table of Contents

Advertisement

Command Manual – QoS/ACL
Quidway S8500 Series Routing Switches
ip-group { acl-number | acl-name }: Activates IP ACLs, including basic and advanced
ACLs. acl-number : Sequence number of ACL, ranging from 2000 to 3999. acl-name:
Name of the ACL, which must be a character string starting with an English letter (a-z or
A-Z), and without any space or quotation mark in it.
link-group { acl-number | acl-name }: Activates Layer 2 ACLs. acl-number: Sequence
number of ACL, ranging from 4000 to 4999. acl-name: Name of ACL, which must be a
character string started with an English letter (a-z or A-Z), and without any space or
quotation mark in it.
rule rule: Specifies the rule of an active ACL, ranging from 0 to 127; if not specified, all
rules of ACL will be activated.
system-index index here is the system index for an ACL rule. When delivering a rule,
the system assigns a globally unique index to it, for convenience of later retrieval. You
can also assign a system index for it when delivering an ACL rule with this command.
However, you are not recommended to manually assign a system index if not urgently
necessary.
Note:
If you remove the card with QoS/ACL configured when the system operates, the
corresponding system index value is automatically released, and is then used for a
newly delivered flow rule. Once the system index value is occupied, the original
configuration cannot be restored even you insert the removed card back.
slot slotid: Slot number of a service processor card.
Description
Use the packet-filter command to activate an ACL.
Use the undo packet-filter command to deactivate an active ACL.
Note:
The interface cards support the command syntax in Ethernet port view; while the
service processor cards (LSB1NATB0 cards in the context of this document) support
the command syntax in VLAN view because these cards have no egress port.
Before executing the packet-filter command on a service processor card, you must
first configure traffic redirection in Ethernet port view to redirect packets of a specific
VLAN to the service processor card.
Huawei Technologies Proprietary
1-12
Chapter 1 ACL Commands

Advertisement

Table of Contents
loading

Table of Contents