R3721-F3210-F3171-HP High-End Firewalls Network Management Configuration Guide-6PW101

Table Of Contents
297
Packet filtering configuration example
Network requirements
As shown in Figure 210, configure a QoS policy to filter the incoming packets whose TCP source port is
not 21 on GigabitEthernet 0/1.
Figure 210 Network diagram
Configuration procedure
1.
Configure ACLs:
# Create ACL 3000, and configure a rule to match packets whose TCP source port is not 21.
{
Select Firewall > ACL from the navigation tree, and click Add. Perform configuration on the
page shown in Figure 211.
Figure 211 Creating ACL 3
000
{
Enter 3000 as the ACL number.
{
Select Config from the Match Order list.
{
Click Apply.
{
Click the icon for ACL 3000 on the ACL list, and click Add. Perform configuration on the
page shown in Figure 212.