4-6
To do…
Use the command…
Remarks
Create a WLAN ACL and
enter its view
acl number
acl-number
Required
By default, no ACL exists.
WLAN ACLs are numbered in the range 100 to 199.
Configure a description
for the WLAN ACL
description
text
Optional
By default, a WLAN ACL has no ACL description.
Set the rule numbering
step
step
step-value
Optional
5 by default.
Create or edit a rule
rule
[
rule-id
] {
permit
|
deny
} [
ssid
ssid-name
]
Required
By default, a WLAN ACL does not contain any rule.
To create or edit multiple rules, repeat this step.
Configure or edit a rule
description
rule rule-id comment text
Optional
By default, a WLAN ACL rule has no description.
Configuring a Basic ACL
Configuring an IPv4 basic ACL
IPv4 basic ACLs match packets based on only source IP address.
Follow these steps to configure an IPv4 basic ACL:
To do…
Use the command…
Remarks
Enter system view
system-view
––
Create an IPv4 basic ACL
and enter its view
acl number
acl-number
[
name acl-name
]
[
match-order
{
auto
|
config
} ]
Required
By default, no ACL exists.
IPv4 basic ACLs are numbered in the range 2000
to 2999.
You can use the
acl
name
acl-name
command to
enter the view of an existing named IPv4 ACL.
Configure a description
for the IPv4 basic ACL
description
text
Optional
By default, an IPv4 basic ACL has no ACL
description.
Set the rule numbering
step
step
step-value
Optional
5 by default.
Create or edit a rule
rule
[
rule-id
] {
deny
|
permit
} [
fragment
|
logging
|
source
{
sour-addr
sour-wildcard
|
any
} |
time-range
time-range-name
] *
Required
By default, an IPv4 basic ACL does not contain
any rule.
To create or edit multiple rules, repeat this step.
The
logging
keyword takes effect only when the
module that uses the ACL supports logging.
Configure or edit a rule
description
rule
rule-id comment
text
Optional
By default, an IPv4 ACL rule has no rule
description.
Configuring an IPv6 basic ACL
Follow these steps to configure an IPv6 basic ACL: