H3C S6812 Series Command Reference Manual page 1534

Hide thumbs Also See for S6812 Series:
Table of Contents

Advertisement

Usage guidelines
If acl-number, name acl-name, ipv6, or mac is not specified, this command clears the packet
filtering statistics for all ACLs and the default action statistics.
To specify the IPv4 ACL type, do not specify the ipv6 or mac keyword.
Examples
# Clear IPv4 basic ACL 2001 statistics for inbound packet filtering on Ten-GigabitEthernet 1/0/1.
<Sysname> reset packet-filter statistics interface ten-gigabitethernet 1/0/1 inbound 2001
Related commands
display packet-filter statistics
display packet-filter statistics sum
rule (IPv4 advanced ACL view)
Use rule to create or edit an IPv4 advanced ACL rule.
Use undo rule to delete an entire IPv4 advanced ACL rule or some attributes in the rule.
Syntax
rule [ rule-id ] { deny | permit } protocol [ { { ack ack-value | fin fin-value | psh psh-value | rst
rst-value | syn syn-value | urg urg-value } * | established } | counting | destination { dest-address
dest-wildcard | any } | destination-port operator port1 [ port2 ] | { dscp dscp | { precedence
precedence | tos tos } * } | fragment | icmp-type { icmp-type [ icmp-code ] | icmp-message } |
logging | source { source-address source-wildcard | any } | source-port operator port1 [ port2 ] |
time-range time-range-name ] *
undo rule rule-id [ { { ack | fin | psh | rst | syn | urg } * | established } | counting | destination |
destination-port | { dscp | { precedence | tos } * } | fragment | icmp-type | logging | source |
source-port | time-range ] *
undo rule { deny | permit } protocol [ { { ack ack-value | fin fin-value | psh psh-value | rst rst-value
| syn syn-value | urg urg-value } * | established } | counting | destination { dest-address
dest-wildcard | any } | destination-port operator port1 [ port2 ] | { dscp dscp | { precedence
precedence | tos tos } * } | fragment | icmp-type { icmp-type [ icmp-code ] | icmp-message } |
logging | source { source-address source-wildcard | any } | source-port operator port1 [ port2 ] |
time-range time-range-name ] *
Default
No IPv4 advanced ACL rules exist.
Views
IPv4 advanced ACL view
Predefined user roles
network-admin
Parameters
rule-id: Specifies a rule ID in the range of 0 to 65534. If you do not specify a rule ID when creating an
ACL rule, the system automatically assigns it a rule ID. This rule ID is the nearest higher multiple of
the numbering step to the current highest rule ID, starting from 0. For example, if the rule numbering
step is 5 and the current highest rule ID is 28, the rule is numbered 30.
deny: Denies matching packets.
permit: Allows matching packets to pass.
protocol: Specifies one of the following values:
19

Advertisement

Table of Contents
loading

This manual is also suitable for:

S6813 seriesS5150-ei

Table of Contents