Qtech QSW-2870 [160/230] According to different destination please execute corresponding steps refer to the

Qtech QSW-2870 [160/230] According to different destination please execute corresponding steps refer to the
Chapter7 Security Configuration
7-6
According to different destination, please execute corresponding steps. Refer to the
following table.
Objective
Procedure
Create one layer3
ACL
1. Use command of configure to enter Global Configuration View;
2. Use command of filter-list acl-number to create one layer3 ACL
and enter Layer3 ACL Configuration View;
3. End.
Configure layer3
ACLrule
1. Use command of configure to enter Global Configuration View;
2. Use command of filter-list acl-number to enter Layer3 ACL
Configuration View;
[ User can choose from step3 to step8 to configure according to your
need. ]
3. (Optional) Use the following commands to configure ACL rule
matching IP;
filter rule-number ip { src-ip-address/M | any} { dst-ip-address/M |
any }
filter rule-number src-ip {src-ip-address | any} src-mask
{src-ip-mask | any} dst-ip {dst-ip-address | any} dst-mask
{dst-ip-mask | any}
filter rule-number ip { src-ip-address/M | any} { dst-ip-address/M |
any } precedence tos-priority
filter rule-number src-ip { src-ip-address | any} src-mask
{src-ip-mask | any} dst-ip {dst-ip-address | any} dst-mask {dst-ip-mask |
any} precedence tos-priority
filter rule-number ip { src-ip-address/M | any} { dst-ip-address/M |
any } dscp dscp
filter rule-number src-ip { src-ip-address | any} src-mask
{src-ip-mask | any} dst-ip {dst-ip-address | any} dst-mask
{dst-ip-mask | any} dscp dscp
filter rule-number ip { src-ip-address/M | any} { dst-ip-address/M |
any } fragment
filter rule-number src-ip { src-ip-address | any} src-mask
{src-ip-mask | any} dst-ip {dst-ip-address | any} dst-mask {dst-ip-mask |
any} fragment
filter filter number ip (src-ip-address/M |any) (dst-ip-address M|any)
precedence tos field fragment
filter filter number src-ip { src-ip-address | any} src-mask
{src-ip-mask | any} dst-ip {dst-ip-address | any} dst-mask {dst-ip-mask |
any} precedence tos field fragment
filter filter number ip (src-ip-address/M |any) (dst-ip-address M |any)

Содержание

Скачать
Случайные обсуждения