ZXR10 2900 Series User Manual
source MAC address, destination MAC address, source
VLAN ID and 802. 1p priority value.
v. Global ACL: Match source IP address, destination IP ad-
dress, IP protocol type, TCP source port number, TCP des-
tination port number, UDP source port number, UDP des-
tination port number, DiffServ Code Point (DSCP), source
MAC address, destination MAC address, source VLAN ID
and 802.1p priority value.
5. Each ACL has an access list number to identify. The access list
number is a number. The access list number ranges of different
types of ACL are shown below:
�
Basic ACL: 1~99
�
Extended ACL: 100~199
�
L2 ACL: 200~299
�
Hybrid ACL: 300~399, support IPV6
�
global ACL: 400
Each ACL has at most 500 rules and the range is 1-500.
Basic Configuration of ACL
To configure ACL, perform the following steps.
1. To create a basic ACL instance, use the following command.
Command
Function
zte(cfg)#
config acl basic number
<
acl-number
>
This creates a basic
ACL instance.
2. To create an extended ACL instance, use the following com-
mand.
Command
Function
zte(cfg)#
config acl extend number
<
acl-number
>
This creates an
extended ACL
instance.
3. To create a L2 ACL instance, use the following command.
Command
Function
zte(cfg)#
config acl link number
<
acl-number
>
This creates a L2 ACL
instance.
4. To create a Hybrid ACL instance, use the following command.
148
Confidential and Proprietary Information of ZTE CORPORATION