
1-10
Configuration procedure
Table 1-6
Assign an ACL to a VLAN
Operation
Command
Description
Enter system view
system-view
—
Apply an ACL to a VLAN
packet-filter vlan vlan-id
inbound
acl-rule
Required
For description on the
acl-rule
argument,
refer to
ACL Command
.
An ACL assigned to a VLAN takes effect only for the packets tagged with 802.1Q header. For more
information about 802.1Q header, refer to the VLAN part.
Configuration example
# Apply ACL 2000 to VLAN 10 to filter the inbound packets of VLAN 10 on all the ports.
<Sysname> system-view
[Sysname] packet-filter vlan 10 inbound ip-group 2000
Assigning an ACL to a Port Group
Configuration prerequisites
Before applying ACL rules to a VLAN, you need to define the related ACLs. For information about
defining an ACL, refer to section
Configuring Basic ACL
, section
Configuring Advanced ACL
, section
Configuring Layer 2 ACL
.
Configuration procedure
Table 1-7
Assign an ACL to a port group
Operation
Command
Description
Enter system view
system-view
—
Enter port group view
port-group group-id
—
Apply an ACL to the port
group
packet-filter
inbound
acl-rule
Required
For description on the
acl-rule
argument, refer to
ACL Command
.
Содержание H3C S5100-SI
Страница 129: ...1 10...
Страница 522: ...ii...
Страница 701: ...3 2...
Страница 797: ...1 20 0 00 packet loss round trip min avg max 50 60 70 ms...
Страница 827: ...i Table of Contents 1 Acronyms 1 1...