Chapter 4 Service Configuration
Guidelines
Other rule can match non-IP/ARP packets with ether-type fields, dsap-ssap fields, cos
fields, VLAN fields, specified source MAC, any source MAC, specified destination MAC,
or any destination MAC.
4.13.23 ingress-acl link rule type-any
Purpose
This command sets the rule that the layer–2 ingress ACL matches specified cos and VLAN
ID.
Command Mode
Layer 2 ingress ACL configuration mode
Syntax
rule
<
1-500
>{
permit
|
deny
}
any
[<
vlan-id
>[<
vlan-mask
>]][
cos
<
0-7
>][<
source-mac
><
smac-ma
sk
>|
any
][<
dest-mac
><
dmac-mask
>|
any
]
Parameter Description
Parameter
Parameter
<
1-500
>
Rule number.
permit
If the condition matches, access is permitted.
deny
If the condition matches, access is denied.
any
This rule can match any packet.
cos
<
0-7
>
This rule is only valid for the cos-specified message. Ignore this
rule for other messages. The range of cos is 0 to 7.
<
vlan-id
>
This rule is only valid for messages with the specified VLAN ID.
Ignore this rule for other messages. The rule of VLAN ID is 1
to 4094.
<
vlan-mask
>
Optional VLAN mask. The default value is 0xfff.
Guidelines
Any rule can match VLAN field and cos field.
4.13.24 clear ingress-acl link
Purpose
This command clears a layer–2 ingress ACL instance.
4-231
SJ-20130731155059-003|2013-11-27 (R1.0)
ZTE Proprietary and Confidential