ACL Commands
229
Description
Use the
rule
command to add a rule to the ACL.
Use the
undo rule
command to delete a rule from the ACL.
You can define multiple rules for an ACL. Only the specified rules will be deleted if
you select parameters in the
undo rule
command.
If you redefine an existing rule, the newly configured option automatically
overwrites the corresponding option of the original rule, and the option not being
redefined remains. For example:
With the original rule 0:
[acl number 2000]rule 0 permit source 10.1.1.1 0 time-range 3Com
when redefine it as follows:
[acl number 2000]rule 0 permit source 10.1.1.2 0 fragment
it becomes:
rule 0 permit source 10.1.1.2 0 fragment time-range 3Com
That is, the source option is replaced with 10.1.1.2, the fragment option which
the original rule does not contain is added, and the time-range 3Com option
which the original rule contains is reserved.
c
CAUTION:
■
If you want to replace an existing rule, you are recommended to use the undo
command to delete the original rule fist, and then reconfigure the rule. This
makes sure the unwanted options are completely removed.
■
If you configure a rule without providing the rule number, the system will
automatically generate a new rule if the rule is not identical to any existing
rules.
■
The rule with the specified bt-flag cannot be used in the traffic-redirect
command.
Related command:
acl
.
Example
# Add a rule to the advanced ACL.
<SW8800> system-view
System View: return to User View with Ctrl+Z.
[SW8800]acl number 3000
[3Com-acl-adv-3000] rule 1 permit tcp established source 1.1.1.1 0
destination 2.2.2.2 0
time-range
Syntax
time-range
time-name
{
start-time
to
end-time
days-of-the-week
[
from
start-time start-date
] [
to
end-time end-date
] |
from
start-time start-date
[
to
end-time end-date
] |
to
end-time end-date
}
Содержание Switch 8807
Страница 30: ......
Страница 68: ...66 CHAPTER 2 COMMANDS USED TO LOG IN TO SWITCH ...
Страница 78: ...76 CHAPTER 3 CONFIGURATION FILE MANAGEMENT COMMANDS ...
Страница 96: ...94 CHAPTER 5 SUPER VLAN CONFIGURATION COMMANDS ...
Страница 122: ...120 CHAPTER 8 IP PERFORMANCE CONFIGURATION COMMANDS ...
Страница 130: ...128 CHAPTER 9 GARP GVRP CONFIGURATION COMMANDS ...
Страница 162: ...160 CHAPTER 11 ETHERNET LINK AGGREGATION CONFIGURATION COMMANDS ...
Страница 212: ...210 CHAPTER 13 MSTP CONFIGURATION COMMANDS ...
Страница 234: ...232 CHAPTER 16 ACL COMMANDS ...
Страница 282: ...280 CHAPTER 18 ACL CONTROL COMMANDS TO CONTROL LOGIN USERS ...
Страница 293: ......
Страница 294: ...292 CHAPTER 19 VLAN ACL CONFIGURATION COMMANDS ...
Страница 310: ...308 CHAPTER 20 802 1X CONFIGURATION COMMANDS ...
Страница 370: ...368 CHAPTER 21 AAA AND RADIUS HWTACACS PROTOCOL CONFIGURATION COMMANDS ...
Страница 398: ...396 CHAPTER 23 STATIC ROUTE CONFIGURATION COMMANDS ...
Страница 462: ...460 CHAPTER 25 OSPF CONFIGURATION COMMANDS ...
Страница 498: ...496 CHAPTER 26 INTEGRATED IS IS CONFIGURATION COMMANDS ...
Страница 548: ...546 CHAPTER 27 BGP CONFIGURATION COMMANDS ...
Страница 570: ...568 CHAPTER 30 RECURSIVE ROUTING CONFIGURATION ...
Страница 584: ...582 CHAPTER 32 MULTICAST VLAN CONFIGURATION COMMANDS ...
Страница 600: ...598 CHAPTER 33 MULTICAST COMMON CONFIGURATION COMMANDS ...
Страница 604: ...602 CHAPTER 34 STATIC MULTICAST MAC ADDRESS CONFIGURATION COMMAND ...
Страница 656: ...654 CHAPTER 37 MSDP CONFIGURATION COMMANDS ...
Страница 682: ...680 CHAPTER 38 MBGP MULTICAST EXTENSION CONFIGURATION COMMANDS ...
Страница 762: ...760 CHAPTER 40 BGP MPLS VPN CONFIGURATION COMMANDS ...
Страница 807: ...HA Configuration Commands 805 Example Configure the system Xbar load mode SW8800 xbar load balance ...
Страница 808: ...806 CHAPTER 44 HA CONFIGURATION COMMANDS_HA_CONFIGURATION ...
Страница 820: ...818 CHAPTER 45 ARP CONFIGURATION COMMANDS ...
Страница 824: ...822 CHAPTER 46 ARP TABLE SIZE CONFIGURATION COMMANDS max arp entry config of slot 13 8192 ...
Страница 862: ...860 CHAPTER 47 DHCP CONFIGURATION COMMANDS ...
Страница 870: ...868 CHAPTER 48 DNS CONFIGURATION COMMANDS ...
Страница 972: ...970 CHAPTER 56 SSH TERMINAL SERVICE CONFIGURATION COMMANDS ...
Страница 982: ...980 CHAPTER 57 FILE SYSTEM MANAGEMENT COMMANDS ...
Страница 1026: ...1024 CHAPTER 60 INFORMATION CENTER ...
Страница 1046: ...1044 CHAPTER 63 PORT PACKET STATISTICS COMMANDS ...
Страница 1051: ...Ethernet Port Detection Configuration Commands 1049 ...
Страница 1052: ...1050 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1053: ...Ethernet Port Detection Configuration Commands 1051 ...
Страница 1054: ...1052 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1055: ......
Страница 1056: ...1054 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1057: ......
Страница 1058: ...1056 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1059: ...Ethernet Port Detection Configuration Commands 1057 ...
Страница 1060: ...1058 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1061: ......
Страница 1062: ...1060 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1063: ...Ethernet Port Detection Configuration Commands 1061 ...
Страница 1064: ...1062 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1065: ......
Страница 1066: ...1064 CHAPTER 64 PORT LOOPBACK DETECTION COMMANDS ...
Страница 1090: ...1088 CHAPTER 66 NQA CONFIGURATION COMMANDS ...