EasyManua.ls Logo

Zte ZXR10 - Rule (Layer 2 ACL)

Zte ZXR10
177 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
ZXR10CommandManual(SecurityVolume)
bootpc,bootps,domain,NTP ,pim-auto-rp,RIP ,SNMP ,sn-
mptrapandTFTP
Ifthetime-rangeeldisnotcongured,thisrulewillbeeffec-
tivepermanently.Therelevanttimerangecommandmustbe
conguredbeforetheuseofthetime-rangeeld.
ACLruleeventlistisonlysupportedinT160Gseriesswitches.
ExampleThisexampledescribeshowtocongurerules1~5oftheex-
tendedACL.
ZXR10(config)#aclextendednumber100
ZXR10(config-ext-acl)#rule1permit100anyany
ZXR10(config-ext-acl)#rule2permiticmp168.1.1.00.0.0.255any
echodscp1
ZXR10(config-ext-acl)#rule3denyipany168.1.0.00.0.255.255
tos1precedence1
ZXR10(config-ext-acl)#rule4permittcpanyeqbgp168.1.1.0
0.0.0.255eqdomainestablishedtos1precedence7
ZXR10(config-ext-acl)#rule5denyudpanyanydscp5time-rangetest
Related
Commands
showacl
time-range
event-list
rule(Layer2ACL)
PurposeUsethiscommandtodenealayer2ACLrule.Deletetherule
withnocommand.
CommandModesLayer2ACLconguration
Syntaxrule<rule-no>{permit|deny}{<ether-protocol>|any}[cos
<cos-value>][incos<cos-value>][dinvlan<vlan-id>][douterv
lan<vlan-id>][ingress{<source-mac><source-mac-wildcard>|
any}][egress{<dest-mac><dest-mac-wildcard>|any}][{time
-range<timerange-name>|event<event-name>}]
norule<rule-no>
Syntax
Description
<rule-no>ACLrulenumber ,range:1~100or1000
permitPermitsthepacketthatmatchesthisrule
denyDeniesthepacketthatmatchesthisrule
<ether-protocol>
Ethernettypeeld,IP ,ARPoradesignated
number(0~65535)
cos<cos-value>
802.1ppriority,range:0~7,outer
incos<cos-value>802.1ppriority,range:0~7,inside
dinvlan<vlan-id>
InsideVLANidentier
doutervlan
<vlan-id>
OutsideVLANidentier
ingressFiltersaccordingtosourceMACaddress
28CondentialandProprietaryInformationofZTECORPORATION

Table of Contents

Other manuals for Zte ZXR10

Related product manuals