R3102-R3103-HP 6600/HSR6600 Routers Layer 3 - IP Routing Command Reference

42
To reference an advanced ACL (with a number from 3000 to 3999) in the command, configure the ACL
in one of the following ways:
To deny/permit a route with the specified destination, use the rule [ rule-id ] { deny | permit } ip
source sour-addr sour-wildcard command
To deny/permit a route with the specified destination and mask, use the rule [ rule-id ] { deny |
permit } ip source sour-addr sour-wildcard destination dest-addr dest-wildcard command.
The source keyword specifies the destination address of a route and the destination keyword specifies the
subnet mask of the route. (The subnet mask must be valid; otherwise, the configuration is ineffective.)
Examples
# Reference ACL 2000 to filter redistributed routes.
<Sysname> system-view
[Sysname] acl number 2000
[Sysname-acl-basic-2000] rule deny source 192.168.10.0 0.0.0.255
[Sysname-acl-basic-2000] quit
[Sysname] rip 1
[Sysname-rip-1] filter-policy 2000 export
# Reference IP prefix list abc to filter redistributed routes on GigabitEthernet 2/1/1.
[Sysname-rip-1] filter-policy ip-prefix abc export gigabitethernet 2/1/1
# Configure ACL 3000 to permit only route 113.0.0.0/16 to pass, and reference ACL 3000 to filter
redistributed routes.
<Sysname> system-view
[Sysname] acl number 3000
[Sysname-acl-adv-3000] rule 10 permit ip source 113.0.0.0 0 destination 255.255.0.0 0
[Sysname-acl-adv-3000] rule 100 deny ip
[Sysname-acl-adv-3000] quit
[Sysname] rip 1
[Sysname-rip 1] filter-policy 3000 export
Related commands
acl (ACL and QoS Command Reference)
import-route
ip ip-prefix
filter-policy import (RIP view)
Use filter-policy import to configure RIP to filter received routes.
Use undo filter-policy import to restore the default.
Syntax
filter-policy { acl-number | gateway ip-prefix-name | ip-prefix ip-prefix-name [ gateway ip-prefix-name ] }
import [ interface-type interface-number ]
undo filter-policy import [ interface-type interface-number ]
Default
RIP does not filter received routes.