Command Manual - QoS/ACL
Quidway S3500 Series Ethernet Switches Chapter 1 ACL Commands
Huawei Technologies Proprietary
1-11
Table 1-6 ACL configuration restriction for QoS function in S3526
QoS function Implementation Restrictions on ACL configuration
Packet filter
packet-filter
{ ip-group { acl-number
| acl-name } [ rule rule ]
| link-group
{ acl-number |
acl-name } [ rule rule ] }
Packet filter only supports using the
ACL of deny operation.
The Layer-2 ACL supports using the
rules of MAC-MAC, MAC-PORT,
PORT-PORT, MAC-ANY, ANY-MAC,
PORT-ANY and ANY-PORT.
The Layer-3 ACL supports using the
rules of IP-IP, IP-NET, NET-NET,
IP-ANY, ANY-IP, NET-ANY and
ANY-NET.
Traffic mirroring
mirrored-to { ip-group
{ acl-number |
acl-name } [ rule rule ] |
link-group
{ acl-number |
acl-name } [ rule rule ] }
[ interface
{ interface-name |
interface-type
interface-num } ]
Traffic mirroring only supports using
the ACL of permit operation.
The Layer-2 ACL supports using the
rules of MAC-MAC, MAC-PORT,
PORT-PORT, MAC-ANY, ANY-MAC,
PORT-ANY and ANY-PORT.
The Layer-3 ACL supports using the
rules of IP-IP, IP-NET, NET-NET,
IP-ANY, ANY-IP, NET-ANY and
ANY-NET.
Traffic statistic
traffic-statistic
{ ip-group { acl-number
| acl-name } [ rule rule ]
| link-group
{ acl-number |
acl-name } [ rule rule ] }
Traffic statistics only supports using
the ACL of permit operation.
The Layer-2 ACL supports using the
rules of MAC-MAC.
The Layer-3 ACL supports using the
rules of IP-IP, but not traffic statistics
of special protocols.
Priority tag
traffic-priority
{ ip-group { acl-number
| acl-name } [ rule rule ]
| link-group
{ acl-number |
acl-name } [ rule rule ] }
local-precedence
pre-value
Priority tag function only supports
using the ACL of permit operation.
The Layer-2 ACL supports using the
rules of MAC-MAC, MAC-PORT,
PORT-PORT, MAC-ANY, ANY-MAC,
PORT-ANY and ANY-PORT.
The Layer-3 ACL supports using the
rules of IP-IP, IP-NET, NET-NET,
IP-ANY, ANY-IP, NET-ANY and
ANY-NET.
For the ACL used in priority tag, if the
destination IP addresses or
destination MAC addresses for two
rules are the same, the new rule will
overwrite the previous one.