VLAN-ACL Configuration Commands
283
ip-group
{
acl-number
|
acl-name
}: Activates IP ACLs, including basic and
advanced ACLs.
acl-number
: Sequence number of ACL, ranging from 2000 to
3999.
acl-name
: Name of the ACL, which must be a character string starting with
an English letter (a-z or A-Z), and without any space in it.
rule
rule
: Specifies the subitem of an active ACL, ranging from 0 to 127; if not
specified, all subitems of ACL will be activated.
system-index
index
: Specifies the system index value of the rule which will be
indexed during operation. After delivering a rule, the system automatically assigns
a globally unique index value to the rule. When using this command to deliver a
rule, you can also specify a system index value for the rule, but this value may
change while the system is running. In general, you are not recommended to
specify this parameter manually.
Description
Use the
packet-filter
command to activate the ACLs in VLAN.
Use the
undo packet-filter
command to deactivate an active ACL.
Example
# Activate ACL 2000 of each port in VLAN 2.
<SW8800> system-view
System View: return to User View with Ctrl+Z.
[SW8800] vlan 2
[3Com-vlan2] packet-filter inbound ip-group 2000
traffic-limit
Syntax
traffic-limit
inbound
ip-group
{
acl-number
|
acl-name
} [
rule
rule
[
system-index
index
] ] [
tc-index
index
] {
traffic-index
traffic-index
|
cir cbs ebs
[
pir
] } {
conform
{
remark-cos
|
remark-policed-service
} |
exceed
{
forward
|
drop
} }*
undo traffic-limit inbound
ip-group
{
acl-number
|
acl-name
} [
rule
rule
]
View
VLAN view
Parameter
inbound
: Implements traffic policing for data packets received on the port.
ip-group
{
acl-number
|
acl-name
}: Activates the ACL identified by the
acl-number
or
acl-name
argument. The ACL here can be a basic ACL or an
advanced ACL.
acl-number
: Sequence number of the ACL, ranging from 2000 to
3999.
acl-name
: Name of the ACL, a string beginning with character a-z or A-Z.
Note that this argument cannot contain spaces.
rule
rule
: Specifies the rule identified by the
rule
argument of the ACL. The
rule
argument ranges from 0 to 127. Without this keyword, this command applies to
all rules of the ACL.
Summary of Contents for Switch 8807
Page 30: ......
Page 68: ...66 CHAPTER 2 COMMANDS USED TO LOG IN TO SWITCH ...
Page 78: ...76 CHAPTER 3 CONFIGURATION FILE MANAGEMENT COMMANDS ...
Page 96: ...94 CHAPTER 5 SUPER VLAN CONFIGURATION COMMANDS ...
Page 122: ...120 CHAPTER 8 IP PERFORMANCE CONFIGURATION COMMANDS ...
Page 130: ...128 CHAPTER 9 GARP GVRP CONFIGURATION COMMANDS ...
Page 162: ...160 CHAPTER 11 ETHERNET LINK AGGREGATION CONFIGURATION COMMANDS ...
Page 212: ...210 CHAPTER 13 MSTP CONFIGURATION COMMANDS ...
Page 234: ...232 CHAPTER 16 ACL COMMANDS ...
Page 282: ...280 CHAPTER 18 ACL CONTROL COMMANDS TO CONTROL LOGIN USERS ...
Page 293: ......
Page 294: ...292 CHAPTER 19 VLAN ACL CONFIGURATION COMMANDS ...
Page 310: ...308 CHAPTER 20 802 1X CONFIGURATION COMMANDS ...
Page 370: ...368 CHAPTER 21 AAA AND RADIUS HWTACACS PROTOCOL CONFIGURATION COMMANDS ...
Page 398: ...396 CHAPTER 23 STATIC ROUTE CONFIGURATION COMMANDS ...
Page 462: ...460 CHAPTER 25 OSPF CONFIGURATION COMMANDS ...
Page 498: ...496 CHAPTER 26 INTEGRATED IS IS CONFIGURATION COMMANDS ...
Page 548: ...546 CHAPTER 27 BGP CONFIGURATION COMMANDS ...
Page 570: ...568 CHAPTER 30 RECURSIVE ROUTING CONFIGURATION ...
Page 584: ...582 CHAPTER 32 MULTICAST VLAN CONFIGURATION COMMANDS ...
Page 600: ...598 CHAPTER 33 MULTICAST COMMON CONFIGURATION COMMANDS ...
Page 604: ...602 CHAPTER 34 STATIC MULTICAST MAC ADDRESS CONFIGURATION COMMAND ...
Page 656: ...654 CHAPTER 37 MSDP CONFIGURATION COMMANDS ...
Page 682: ...680 CHAPTER 38 MBGP MULTICAST EXTENSION CONFIGURATION COMMANDS ...
Page 762: ...760 CHAPTER 40 BGP MPLS VPN CONFIGURATION COMMANDS ...
Page 808: ...806 CHAPTER 44 HA CONFIGURATION COMMANDS_HA_CONFIGURATION ...
Page 820: ...818 CHAPTER 45 ARP CONFIGURATION COMMANDS ...
Page 824: ...822 CHAPTER 46 ARP TABLE SIZE CONFIGURATION COMMANDS max arp entry config of slot 13 8192 ...
Page 862: ...860 CHAPTER 47 DHCP CONFIGURATION COMMANDS ...
Page 870: ...868 CHAPTER 48 DNS CONFIGURATION COMMANDS ...
Page 972: ...970 CHAPTER 56 SSH TERMINAL SERVICE CONFIGURATION COMMANDS ...
Page 982: ...980 CHAPTER 57 FILE SYSTEM MANAGEMENT COMMANDS ...
Page 1026: ...1024 CHAPTER 60 INFORMATION CENTER ...
Page 1046: ...1044 CHAPTER 63 PORT PACKET STATISTICS COMMANDS ...
Page 1051: ...Ethernet Port Detection Configuration Commands 1049 ...
Page 1052: ...1050 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1053: ...Ethernet Port Detection Configuration Commands 1051 ...
Page 1054: ...1052 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1055: ......
Page 1056: ...1054 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1057: ......
Page 1058: ...1056 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1059: ...Ethernet Port Detection Configuration Commands 1057 ...
Page 1060: ...1058 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1061: ......
Page 1062: ...1060 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1063: ...Ethernet Port Detection Configuration Commands 1061 ...
Page 1064: ...1062 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1065: ......
Page 1066: ...1064 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Page 1090: ...1088 CHAPTER 66 NQA CONFIGURATION COMMANDS ...