Step Command
1
interface <port-name>
ZXR10(config)#
2
ZXR10(config-gei_1/x)#
<acl-number> in
Step Command
1
vlan <vlan-id>
ZXR10(config)#
2
ZXR10(config-vlanX)#
r><acl-name>} in
Applying ACL on Physical Port
ip access-group
Note:
One physical port only can apply one ACL. The new configura-
tion will cover the old one. For example, on gei_1/1 configuration
mode, the following two commands are configured.
ip access-group 10 in
ip access-group 100 in
Only ACL 100 takes effects.
Applying ACL on VLAN
ACL can be applied on both physical port and VLAN after it is de-
fined.
ip access-group {<acl-numbe
Note:
1. Currently, ACL type that VLAN binds only supports IPv4 hybrid
ACL
2. One VLAN can only apply one ACL, the new configuration will
cover the old one. For example, in vlan configuration mode,
the following two commands are configured
ip access-group 300 in
ip access-group 305 in
only ACL 305 takes effects.
Confidential and Proprietary Information of ZTE CORPORATION
Chapter 7 ACL Configuration
Function
This enters interface
configuration mode.
This applies ACL on physical
port.
Function
This enters VLAN
configuration mode.
This applies ACL on VLAN.
65