Operation Manual - QoS/ACL
Quidway S5000 Series Ethernet Switches Chapter 1 ACL Configuration
1-7
1.3 ACL Configuration Example
1.3.1 Advanced ACL Configuration Example
I. Networking requirements
The interconnection between different departments on a company network is
implemented through the 1000M ports of the Ethernet Switch. The Research Dept. is
accessed via GigabitEthernet0/1. The IP address of payment query server of the
Financial Dept. is 129.110.1.2. It is required to properly configure the ACL and limit the
research department access the payment query server between 8:00 and 18:00.
II. Networking diagram
Administration Department
subnet address
10.120.0.0
Financial Department
subnet address
10.110.0.0
Office of President
129.111.1.2
Pay query server
129.110.1.2
Switch
#1
#4
#3
#2
Connected to a router
Figure 1-1 Access control configuration example
III. Configuration precedure
Note:
In the following configurations, only the commands related to ACL configurations are listed.
1) Define the work time range
# Define time range from 8:00 to 18:00.
[Quidway] time-range huawei 8:00 to 18:00 working-day
2) Define the ACL to access the payment server.
# Enter the named advanced ACL, named as traffic-of-payserver.