Qtech QSW-2870 [163/230] Attached list

Qtech QSW-2870 [163/230] Attached list
Chapter7 Security Configuration
7-9
Objective
Procedure
ip-address ip-address
filter rule-number action { insert-outer-vid | replace-outer-vid } vlan-id
filter rule-number action { insert-inner-vid | replace-inner-vid | remove-
inner-vid }
filter rule-number action vfp { insert-inner-vid | replace-inner-vid
|insert-outer-vid | replace-outer-vid| deny | remove-inner-vid } Vlan ID
filter rule-number action vfp
filter rule-number action { cos | precedence | outer-tag-priority | inner-
tag-priority } priority-value
filter rule-number action { outer-tag-priority|inner-tag-priority }
Priority-value
filter rule-number action outer-tag-priority inner-tag-priority
filter rule-number action dscp dscp
filter rule-number action { precedence-priority | priority-precedence }
filter rule-number action counter counter number
4. End.
Bind layer3 ACL
1. Use command of configure to enter Global Configuration View;
2. Use command of filter-list global { in | out } acl-number to bind
designated ACL globally;
3. or use command of filter-list acl-number to enter layer3 ACL
Configuration View and then Use command of filter-list { in | out } acl-
number to apply ACL to physical interface, trunk interface and VLAN
interface;
4. End.
Attached List:
Parameter
Description
Value
acl-number
Access Control List
to be from 1 to 4000
<1-1000>: layer2 ACL
<1001-2000>: IPv4ACL
<2001-3000>: Mixed ACL
<3001-4000>: IPv6ACL
rule-number
rule number of ACL
to be from 1 to 16384
src-ip-address/M |
any
source IP address
information of ACL rule
src-ip-address is dotted decimal, M is
from 1 to 24
any means any source IP address
dst-ip-address/M |
any
destination IP address of
ACL rule
dst-ip-address is dotted decimal, M is
from 1 to 24
any means any destination IP address
src-ip-mask| any
Source IP address mask
dotted decimal

Содержание

Скачать
Случайные обсуждения