Qtech QSW-2870 Руководство пользователя онлайн [158/230] 481606

Qtech QSW-2870 Руководство пользователя онлайн [158/230] 481606
Chapter7 Security Configuration
7-4
Objective
Procedure
(any|<1-16777215>)
4. End.
Configure layer2
ACL action
1. Use command of configure to enter Global Configuration View;
2. Use command of filter-list acl-number to enter Layer2 ACL
Configuration View;
3. Use the following commands to configure ACL action;
filter rule-number action { permit | deny }
filter rule-number action redirect cpu
filter rule-number action mirror cpu
filter rule-number action mirror group group-number
filter rule-number action redirect { fastethernet | eth-trunk } slot/port
filter rule-number action redirect eth-trunk trunk number
filter rule-number action redirect ip-nexthop ip-address
filter rule-number action redirect ip-multihop ip-address ip-address
filter rule-number action redirect ip-multihop ip-address ip-address
ip-address
filter rule-number action redirect ip-multihop ip-address ip-address
ip-address ip-address
filter rule-number action { insert-outer-vid | replace-outer-vid } vlan-id
filter rule-number action { insert-inner-vid | replace-inner-vid | remove-
inner-vid }
filter rule-number action vfp { insert-inner-vid | replace-inner-vid
|insert-outer-vid | replace-outer-vid| deny | remove-inner-vid } Vlan ID
filter rule-number action vfp
filter rule-number action { cos | precedence | outer-tag-priority | inner-
tag-priority } priority-value
filter rule-number action { outer-tag-priority|inner-tag-priority }
Priority-value
filter rule-number action outer-tag-priority inner-tag-priority
filter rule-number action dscp dscp
filter rule-number action { precedence-priority | priority-precedence }
filter rule-number action counter counter number
4. End.
Bind layer2 ACLL
1. Use command of configure to enter Global Configuration View;
2. Use command of filter-list global { in | out } acl-number to globally
bind designated ACL;
3. or use command of filter-list acl-number to enter Layer2 ACL
Configuration View and then Use command of filter-list { in | out } acl-
number to apply ACL to physical interface, trunk interface or VLAN
interface;

Содержание

Скачать
Случайные обсуждения