Activating Acl; Displaying And Debugging Acl - 3Com 7700 Configuration Manual

Hide thumbs Also See for 7700:
Table of Contents

Advertisement

146
C
7: Q
S/ACL O
HAPTER
O

Activating ACL

Displaying and
Debugging ACL
Example: ACL
Configuration
PERATION
Perform the following configuration in the designated view.
Table 7 Define Layer-2 ACL
Operation
Enter Layer-2 ACL view(from
system view)
Add a sub-item to the ACL(from
Layer-2 ACL view)
Delete a sub-item from the
ACL(from Layer-2 ACL view)
Delete one ACL or all the ACL(from
system view)
Layer-2 ACL can be identified with numbers ranging from 200 to 299.
Perform the following configuration in Ethernet Port view.
Table 8 Activate ACL
Operation
Activate an ACL
Deactivate an ACL
After you configure ACL, execute the display command in all views to display the
running of the ACL configuration, and to verify the effect of the configuration.
Execute the reset command in user view to clear the statistics of the ACL module.
Table 9 Display and Debug ACL
Operation
Display the status of the time range display time-range [ name ]
Display the detail information
about the ACL
Display the ACL mode chosen by
the switch
Display the information about the
ACL running state
Clear ACL counters
The matched information of the display acl config command specifies the rules
treated by the switch's CPU. The matched information of the transmitted data by
the switch can be displayed with the display qos-info traffic-statistic command.
For a description of the syntax of these commands, see the "3Com Router
Command Reference Guide".
The interconnection between different departments on a company network is
implemented through the 100M ports of the Switch 7700. The payment query
Command
acl { number acl-number | name acl-name link } [
match-order { config | auto } ]
rule [ rule-id ] { permit | deny } [ protocol-type ] [
format-type ] ingress { [ source-vlan-id ] [ source-mac-addr
] | any } egress { [ dest-mac-addr ] [ destination-vlan-id ] |
any } [ time-range name ]
undo rule rule-id
undo acl { number acl-number | name acl-name | all }
Command
packet-filter inbound { [ ip-group { acl-number |
acl-name } [ rule rule ] ] | [ link-group { acl-number |
acl-name } [ rule rule ] ] }
undo packet-filter inbound { [ ip-group { acl-number |
acl-name } [ rule rule ] ] | [ link-group { acl-number |
acl-name } [ rule rule ] ] }
Command
display acl config { all | acl-number | acl-name }
display acl mode
display acl runtime { all | interface { interface-name |
interface-type interface-num } }
reset acl counter { all | acl-number | acl-name }

Advertisement

Table of Contents
loading

Table of Contents