221
Predefined user roles
network-admin
Parameters
acl-number
: Specifies an ACL by its number in the range of 2000 to 3999 to filter routes calculated using
received LSPs.
prefix-list
prefix-list-name
: Specifies an IPv4 prefix list by its name, a case-sensitive string of 1 to 63
characters, to filter routes calculated using received LSPs by destination address.
route-policy
route-policy-name
: Specifies a routing policy by its name, a case-sensitive string of 1 to 63
characters, to filter received routes.
Usage guidelines
To use an advanced ACL (with a number from 3000 to 3999) in the command, configure the ACL using
one of the following methods:
•
To deny/permit a route with the specified destination, use the
rule
[
rule-id
] {
deny
|
permit
}
ip
source
sour-addr sour-wildcard
command.
•
To deny/permit a route with the specified destination and mask, use the
rule
[
rule-id
] {
deny
|
permit
}
ip source
sour-addr sour-wildcard
destination
dest-addr dest-wildcard
command.
The
source
keyword specifies the destination address of a route and the
destination
keyword specifies the
subnet mask of the route. The subnet mask must be contiguous. Otherwise, the configuration does not
take effect.
Examples
# Use ACL 2000 to filter routes calculated using received LSPs.
<Sysname> system-view
[Sysname] acl number 2000
[Sysname-acl-basic-2000] rule deny source 192.168.10.0 0.0.0.255
[Sysname-acl-basic-2000] quit
[Sysname] isis 1
[Sysname-isis-1] filter-policy 2000 import
# Use ACL 3000 to filter routes calculated using received LSPs and install only route 113.0.0.0/16 to the
IP routing table.
<Sysname> system-view
[Sysname] acl number 3000
[Sysname-acl-adv-3000] rule 10 permit ip source 113.0.0.0 0 destination 255.255.0.0 0
[Sysname-acl-adv-3000] rule 100 deny ip
[Sysname-acl-adv-3000] quit
[Sysname] isis 1
[Sysname-isis 1] filter-policy 3000 import
Related commands
display ip routing-table
flash-flood
Use
flash-flood
to enable IS-IS LSP flash flooding.
Use
undo flash-flood
to disable IS-IS LSP flash flooding.