Company Address: Flat 6, Bldg 4,South 2 of Honghualing Industrial Zone,Liuxian Road, Xili Town, Shenzhen, Guangdong, China(518055)
Tel: +86-755-26014509/4710/4711 Fax:+86-755-26014506
Website: www.cdatatec.com
58
【Command】
rulerule-id(permit | deny)( [cos cos-value ] | [destinationmac-addrmac-wildcard] |
[ sourcemac-addrmac-wildcard] | [ inner-cosinner-cos-value] | [ vlan vlan-id] | [inner-vlan
inner-vlan-id] | [ typeEthernet-type] |[time-rangetime-range-name])
no rule rule-id
【View】basicaclview
【Parameter】
rule-id:ACL Rule-ID。ACLIDisthebiggerthepriority;
permit: Don'tallowtomatchtheflowthroughthemessage;
deny: TheoriginalIPaddresssection
intheAClrules;
source: the original IP address of a ACL matching message;
destination:
TheDestination IP address of a ACL matching message
;
mac-addr:mac address
mac-wildcard:
the wildcard mask of mac address
;
time-range-name
:
The ACL effective time period;
inner-cos-value: matching the cos value of the inner vlan in the massage of data link layer
cos-value
:
matching the value of the outer vlan
vlan-id
:
matching the value of the outer vlanid
inner-cos-value
:
matching the value of the inner vlanid
Ethernet-type
:
matching the type option of Ethernet
【Describtion】
Rule:Commond is used to creat ACL rule in ACL-link mode,you can use this commond ,when
you need match rules according to the source address ,destination address,the protocol type
based data link layer. Successfully create rules, you can use the command reference for packet
filtering rules. Or cooperate with QoS command used for a particular message service quality
assurance.
no rule:Command is used to delete the access control list specified ACL rules。
【Example】
In the worktime period, specified port 1 only can receive from the destination MAC address is
22-22-22-22-22-22 message
OLT(config)#time‐rangeworktime8:00to18:00working‐day
OLT(config)#acl5000
OLT(acl‐link‐5000)#rule2permitdestination22:22:22:22:22:220000‐0000‐0000
OLT(acl‐link‐5000)#rule1denydestination22:22:22:22:22:22FFFF‐FFFF‐FFFF
OLT(acl‐link‐5000)#exit
OLT(config)#packet‐filter
inbound5000portge1
11.6showacl
【Commond】
Showacl(acl‐id|all)
【View】 configview
【parameter】