Copying An Acl; Configuring Packet Filtering With Acls; Applying An Acl To An Interface For Packet Filtering - HP MSR4080 Configuration Manual

Acl and qos
Hide thumbs Also See for MSR4080:
Table of Contents
Step
3.
(Optional.) Configure a
description for the Ethernet
frame header ACL.
4.
(Optional.) Set the rule
numbering step.
5.
Create or edit a rule.
6.
(Optional.) Add or edit a rule
comment.

Copying an ACL

You can create an ACL by copying an existing ACL (source ACL). The new ACL (destination ACL) has the
same properties and content as the source ACL, but not the same ACL number and name.
To successfully copy an ACL, make sure:
The destination ACL number is from the same category as the source ACL number.
The source ACL already exists, but the destination ACL does not.
To copy an ACL:
Step
1.
Enter system view.
2.
Copy an existing ACL to create a new ACL.

Configuring packet filtering with ACLs

This section describes procedures for applying an ACL to filter incoming or outgoing IPv4 or IPv6 packets
on the specified interface.

Applying an ACL to an interface for packet filtering

Step
1.
Enter system view.
2.
Enter interface view.
Command
description text
step step-value
rule [ rule-id ] { deny | permit } [ cos
vlan-pri | counting | dest-mac
dest-address dest-mask | { lsap
lsap-type lsap-type-mask | type
protocol-type protocol-type-mask }
| source-mac source-address
source-mask | time-range
time-range-name ] *
rule rule-id comment text
Command
system-view
acl [ ipv6 ] copy { source-acl-number | name
source-acl-name } to { dest-acl-number | name
dest-acl-name }
Command
system-view
interface interface-type
interface-number
12
Remarks
By default, an Ethernet frame
header ACL has no ACL
description.
The default setting is 5.
,
By default
an Ethernet frame
header ACL does not contain any
rule.
By default, no rule comments are
configured.
Remarks
N/A
N/A

Hide quick links:

Table of Contents
loading

Table of Contents