4-6 
To do…  Use the command…  Remarks 
Create a WLAN ACL and 
enter its view  
acl number
 acl-number 
Required 
By default, no ACL exists. 
WLAN ACLs are numbered in the range 100 to 199.
Configure a description 
for the WLAN ACL 
description
 text
 
Optional 
By default, a WLAN ACL has no ACL description. 
Set the rule numbering 
step 
step
 step-value
 
Optional 
5 by default. 
Create or edit a rule 
rule
 [ rule-id ] { 
permit
 | 
deny
 } [ 
ssid
 ssid-name ]
Required 
By default, a WLAN ACL does not contain any rule. 
To create or edit multiple rules, repeat this step. 
Configure or edit a rule 
description 
rule 
rule-id 
comment 
text
Optional 
By default, a WLAN ACL rule has no description. 
 
Configuring a Basic ACL 
Configuring an IPv4 basic ACL 
IPv4 basic ACLs match packets based on only source IP address. 
Follow these steps to configure an IPv4 basic ACL:  
To do…  Use the command…  Remarks 
Enter system view
 
system-view 
–– 
Create an IPv4 basic ACL 
and enter its view  
acl number
 acl-number 
[ 
name 
acl-name ] 
[ 
match-order
 { 
auto 
| 
config
 } ] 
Required 
By default, no ACL exists. 
IPv4 basic ACLs are numbered in the range 2000 
to 2999. 
You can use the 
acl
 
name
 acl-name command to 
enter the view of an existing named IPv4 ACL. 
 
Configure a description 
for the IPv4 basic ACL 
description
 text
 
Optional 
By default, an IPv4 basic ACL has no ACL 
description. 
Set the rule numbering 
step  
step
 step-value
 
Optional 
5 by default. 
Create or edit a rule
 
rule
 [ rule-id ] { 
deny
 | 
permit
 } [ 
fragment 
|
 
logging
 |
 source
 { sour-addr 
sour-wildcard | 
any
 } |
 
time-range
 
time-range-name ] * 
Required 
By default, an IPv4 basic ACL does not contain 
any rule. 
To create or edit multiple rules, repeat this step.  
The 
logging 
keyword takes effect only when the 
module that uses the ACL supports logging. 
Configure or edit a rule 
description 
 
rule
 rule-id 
comment
 text 
Optional 
By default, an IPv4 ACL rule has no rule 
description.
 
 
Configuring an IPv6 basic ACL 
Follow these steps to configure an IPv6 basic ACL: