Operation Manual – ACL
H3C S3100 Series Ethernet Switches
Chapter 1 ACL Configuration
1-15
II. Network diagram
Switch
PC
10.110.100.46
Internet
Figure 1-2
Network diagram for controlling Web login users by source IP
III. Configuration procedure
# Define ACL 2001.
<Sysname> system-view
[Sysname] acl number 2001
[Sysname-acl-basic-2001] rule 1 permit source 10.110.100.46 0
[Sysname-acl-basic-2001] quit
# Reference ACL 2001 to control users logging in to the Web server.
[Sysname] ip http acl 2001
1.6 Example for Applying ACLs to Hardware
1.6.1 Basic ACL Configuration Example
I. Network requirements
PC 1 and PC 2 connect to the switch through Ethernet 1/0/1. PC1’s IP address is
10.1.1.1. Apply an ACL on Ethernet 1/0/1 to deny packets with the source IP address of
10.1.1.1 from 8:00 to 18:00 everyday.
II. Network diagram
Figure 1-3
Network diagram for basic ACL configuration