Qtech QSW-2910-09T-POE-AC/DC Руководство пользователя онлайн [107/212] 481587

Qtech QSW-2910-09T-POE-AC/DC Руководство пользователя онлайн [107/212] 481587
+7(495) 797-3311 www.qtech.ru
Москва, Новозаводская ул., 18, стр. 1
107
1) ip+port:ip is 192.168.0.1 and port to be Ethernet interface 2
2) ip+port+vid:ip is 192.168.0.2,port is Ethernet interface 2 and vid is 2
3) ip+port+mac;ip is 192.168.0.3,port is Ethernet interface 2 and mac is
00:00:00:00:00:03
The configuration is as following:
(1) Define needed ACL
!Define to deny all packet ACL
QTECH(config)#access-list 200 deny ingress any egress any
!Define to transmit ACL to transmit packet from uplink interface 1
QTECH(config)#access-list 200 permit ingress interface ethernet 0/1
egress any
!Define ACL to transmit packet with VLAN ID being 4016 and from non-
uplinkinterface 2
QTECH(config)#access-list 200 permit ingress 4016 interface ethernet
0/2 egress any
!Define ACL to transmit all ARP packet
QTECH(config)#access-list 200 permit arp ingress any egress any
!Define ip+port user to bind ACL with ip being 192.168.0.1,port being
Ethernet interface 2. This ip+port user bound rule can be divided
into 2 ACLs:one is ACL to transmit packet with source address being
192.168.0.1, the other is ACL to transmit packet from Ethernet
interface 2
QTECH(config)#access-list 1 permit 192.168.0.1 0
QTECH(config)#access-list 201 permit ingress interface ethernet 0/0/2
egress any
!Define ip+port+vid user to bind ACL with ip being 192.168.0.2,port
being Ethernet interface 2 and vid being 2. This ip+port+vid user
bound rule can be divided into 2 ACLs:one is ACL to transmit packet
with source address being 192.168.0.2, the other is ACL to transmit
packet with vid being 2 from Ethernet interface 2
QTECH(config)#access-list 1 permit 192.168.0.2 0
QTECH(config)#access-list 201 permit ingress 2 interface ethernet
0/0/2 egress any
!Define ip+port+mac user to bind ACL with ip being 192.168.0.3,port
being Ethernet interface 2 and mac being 00:00:00:00:00:03. This
ip+port+mac user bound rule can be divided into 2 ACLs:one is ACL to
transmit packet with source address being 192.168.0.3, the other is
ACL to transmit packet with mac being 00:00:00:00:00:03 from Ethernet

Содержание

Скачать