beautypg.com

Network diagram, Configuration procedure – H3C Technologies H3C S3600 Series Switches User Manual

Page 728

background image

1-23

Network diagram

Figure 1-8 Network diagram for applying an ACL to a VLAN

Eth1/0/1

PC 1

PC 3

Database server

PC 2

VLAN 10

Eth1/0/2

Eth1/0/3

192.168.1.2

Configuration procedure

# Define a periodic time range that is active from 8:00 to 18:00 in working days.

system-view

[Sysname] time-range test 8:00 to 18:00 working-day

# Define an ACL to deny packets destined for the database server.

[Sysname] acl number 3000

[Sysname-acl-adv-3000] rule 1 deny ip destination 192.168.1.2 0 time-range tes t

[Sysname-acl-adv-3000] quit

# Apply ACL 3000 to VLAN 10.

[Sysname] packet-filter vlan 10 inbound ip-group 3000

This manual is related to the following products: