F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Access Control Command Reference-6PW100
73
Parameters
acl acl-number: References an IPv4 or IPv6 advanced ACL by its number in the interzone policy. The
acl-number argument ranges from 3000 to 3999. If the ipv6 keyword is not specified, an IPv4 advanced
ACL is specified. Otherwise, an IPv6 advanced ACL is specified.
The following matrix shows the keywords ipv6 and firewalls and UTM compatibility:
Hardware Ke
y
words com
p
atible
F1000-A-EI/F1000-S-EI Yes
F1000-E Yes
F5000 Yes
Firewall module Yes
U200-A Yes
U200-S No
Usage guidelines
In an interzone instance, the interzone policy rule configuration and the interzone policy group
configuration are mutually exclusive.
Examples
# Reference advanced IPv4 ACLs 3001 and 3002 to create an interzone policy group for the interzone
instance with source zone office and destination zone library.
<Sysname> system-view
[Sysname] interzone source office destination library
[Sysname-interzone-office-library] rule acl 3001
[Sysname-interzone-office-library] rule acl 3002
Related commands
rule
rule acl enable
Use rule acl [ ipv6 ] enable to enable an interzone policy group.
Use undo rule acl [ ipv6 ] enable to disable an interzone policy group.
Syntax
rule acl enable
undo rule acl enable
Default
The interzone policy group is disabled.
Views
Interzone instance view
Default command level
2: System level