H3C S3100-52P Operation Manual page 525

Hide thumbs Also See for S3100-52P:
Table of Contents

Advertisement

Operation Manual – ACL
H3C S3100-52P Ethernet Switch
II. Configuration procedure
Follow these steps to define an advanced ACL rule:
Enter system view
Create an advanced ACL
and enter advanced ACL
view
Define an ACL rule
Assign a description string
to the ACL rule
Assign a description string
to the ACL
Note that:
With the config match order specified for the advanced ACL, you can modify any
existent rule. The unmodified part of the rule remains. With the auto match order
specified for the ACL, you cannot modify any existent rule; otherwise the system
prompts error information.
If you do not specify the rule-id argument when creating an ACL rule, the rule will
be numbered automatically. If the ACL has no rules, the rule is numbered 0;
otherwise, the number of the rule will be the greatest rule number plus one. If the
current greatest rule number is 65534, however, the system will display an error
message and you need to specify a number for the rule..
The content of a modified or created rule cannot be identical with the content of
any existing rules; otherwise the rule modification or creation will fail, and the
system prompts that the rule already exists.
If the ACL is created with the auto keyword specified, the newly created rules will
be inserted in the existent ones by depth-first principle, but the numbers of the
existent rules are unaltered.
III. Configuration example
# Configure ACL 3000 to permit the TCP packets sourced from the network
129.9.0.0/16 and destined for the network 202.38.160.0/24 and with the destination
port number being 80.
<Sysname> system-view
[Sysname] acl number 3000
To do...
system-view
acl number acl-number
[ match-order { auto |
config } ]
rule [ rule-id ] { permit |
deny } protocol
[ rule-string ]
rule rule-id comment text
description text
Use the command...
1-8
Chapter 1 ACL Configuration
Remarks
Required
config by default
Required
For information about
protocol and rule-string,
refer to ACL Commands.
Optional
No description by default
Optional
No description by default

Advertisement

Table of Contents
loading

Table of Contents