Configuration Guide
Access
Control List Configuration
Configuration Guide of Expert Extended Access List
When you create an expert extended access list, defined rules will be applied to all packet messages
on a switch. The switch decides whether to forward or block a packet messages by judging whether
the packet matches a rule.
The typical rules defined in expert access lists are the following:
All information in basic access lists and MAC extended access lists
VLAN ID
Expert extended access lists (2700
– 2899) are the syntheses of basic access lists and MAC
extended access lists and can filter VLAN IDs.
A single expert access list can use multiple separate access list sentences to define multiple rules.
Where, all sentences use a same number or name to bind these sentences to a same access list.
Configuring Extended Expert ACL
The configuration of an expert access list includes the following steps:
1.
Define an expert access list
2.
Apply the access list to a specific interface (application particular case)
There are two methods to configure an expert access list.
Method 1: Run the following command in the global configuration mode:
Command
Function
Ruijie (config)#
access-list
id
{
deny
|
permit
} [
prot
|
{[
ethernet-type
]
[
cos
cos
]}]
[
VID
vid
]
{
src
src-wildcard
|
host
src
|
interface
idx
} {
host
src-mac-addr
|
any
} {
dst
dst-wildcard
|
host
dst
|
any
}{
host
dst-mac-addr
|
any
}] [
precedence
precedence
] [
tos
tos
] [
dscp
dscp
] [
fragment
]
[
time-range
tm-rng-name
]
Define an access list. For details about
commands, please see command reference.
Ruijie(config)#
interface
interface
Select the interface to which the access list is
to be applied.
Ruijie(config-if)#
expert
access-group
id
{
in
|
out
} Apply the access list to the specific interface
Method 2: Run the following command in the ACL configuration mode:
Command
Function
Ruijie(config)#
expert
access-list
extended
{
id
|
name
}
Enter the access list configuration mode
Summary of Contents for RG-S2900G-E Series
Page 1: ...RG S2900G E Series Switch RGOS Configuration Guide Release 10 4 2b12 p1 ...
Page 91: ...Configuration Guide Configuring PoE Configuration ...
Page 133: ...Configuration Guide EEE Configuration ...
Page 319: ...Configuration Guide QinQ Configuration ...
Page 408: ......
Page 409: ...IP Routing Configuration 1 Static Route Configuration ...
Page 412: ......
Page 413: ...Multicast Configuration 1 IGMP Snooping Configuration 2 MLD Snooping Configuration ...
Page 757: ......
Page 758: ...ACL QoS Configuration 1 Access Control List Configuration 2 QoS Configuration ...
Page 801: ...Reliability Configuration 1 RLDP Configuration 2 TPP Configuration 3 SEM Configuration ...
Page 901: ...Configuration Guide ERSPAN Configuration ...
Page 902: ...Web based Configuration 1 Web based Configuration ...