H3C S7500 Series Ethernet Switches Operation Manual

Operation Manual – ACL
H3C S7500 Series Ethernet Switches Chapter 1
ACL Configuration
1-20
1.9.2 Configuration Procedure
Table 1-17 Apply an ACL on a port
To do... Use the command... Remarks
Enter system view
system-view
Enter Ethernet port
view
interface interface-type
interface-number
Enter QoS view
qos
packet-filter { inbound |
outbound } acl-rule
[ system-index ]
[ not-care-for-interface ]
Required
This command is supported by
Type A LPUs.
Apply an ACL on the
port
packet-filter inbound
acl-rule [ system-index ]
Required
This command is supported by
LPUs other than Type A.
Display information
about ACLs applied
to a port or all ports.
display acl
running-packet-filter { all
| interface interface-type
interface-number }
Optional
This command can be
executed in any view.
acl-rule: Applied ACL, which can be a combination of different types of ACL rules. Table
1-18 and Table 1-20 describe the ACL combinations on Type A LPUs and the
corresponding parameter description.
Table 1-19 and Table 1-20 describe the ACL
combinations on LPUs other than Type A and the corresponding parameter description.
Table 1-18 Combined application of ACLs on service Type A LPUs
Combination mode Form of acl-rule
Apply all rules in an IP type ACL ip-group { acl-number | acl-name }
Apply one rule in an IP type ACL ip-group { acl-number | acl-name } rule rule-id
Apply all rules in a link type ACL link-group { acl-number | acl-name }
Apply one rule in a link type ACL link-group { acl-number | acl-name } rule rule-id
Table 1-19 Combined application of ACLs on LPUs other than Type A.
Combination mode Form of acl-rule
Apply all rules in an IP type ACL ip-group { acl-number | acl-name }
Apply one rule in an IP type ACL
ip-group { acl-number | acl-name } rule
rule-id
Apply all rules in a link type ACL link-group { acl-number | acl-name }