Operation Manual - QoS/ACL
Quidway S3500 Series Ethernet Switches Chapter 1 ACL Configuration
Huawei Technologies Proprietary
1-17
 Note:
This command supports the process to activate the Layer-2 and IP ACLs at the same
time(IP ACLs include basic and advanced ACLs), however the actions of the
combination items should be consistent. If the actions conflict (one is permit and the
other is deny), they cannot be activated.
1.3.4 Displaying and Debugging ACL
After the above configuration, execute display command in any view to display the
running of the ACL configuration, and to verify the effect of the configuration. Execute
reset command in user view to clear the statistics of the ACL module.
Table 1-18 Displaying and debugging ACL
Operation Command
Display the status of the time range display time-range { all | name }
Display the detail information about the
ACL
display acl config { all | acl-number |
acl-name }
Display the information about the ACL
running state
display acl running-packet-filter all
Clear ACL counters
reset acl counter { all | acl-number |
acl-name }
The matched information of display acl config command specifies the rules treated by
the switch’s CPU. The matched information of the transmitted data by switch can be
displayed by display qos-global traffic-statistic command.
For syntax description, refer to the Command Manual.
1.4 Configuring ACL of S3552 Series
S3552 Series Ethernet Switches include S3552G, S3552P, S3528G, and S3528P
Ethernet Switches.
ACL configuration includes:
z Configuring the time range
z Defining ACL
z Activating ACL
The above three steps had better be taken in sequence. Configure time range first and
then define ACL (using the defined time range in the definition), followed activating ACL
to validate it.