Acfp configuration example, Network requirements – H3C Technologies H3C SR8800 User Manual
Page 22
16
Task Command
Remarks
Display the configuration
information of an ACFP policy.
display acfp policy-info [ client
client-id [ policy-index ] |
dest-interface interface-type
interface-number | global |
in-interface interface-type
interface-number | out-interface
interface-type interface-number ]
[ active | inactive ] [ | { begin |
exclude | include }
regular-expression ]
Display ACFP rule configuration
information.
display acfp rule-info { global |
in-interface [ interface-type
interface-number ] | out-interface
[ interface-type interface-number ]
| policy [ client-id policy-index ] }
[ | { begin | exclude | include }
regular-expression ]
Display the configuration
information of ACFP Trap.
display snmp-agent trap-list [ |
{ begin | exclude | include }
regular-expression ]
ACFP configuration example
Network requirements
Different departments are interconnected on the intranet through Device, which serves as the ACFP server.
An ACFP client is inserted in Device.
Configure the ACFP client to analyze traffic arriving at interface GigabitEthernet 2/1/7, and control the
traffic as follows:
•
Permit all packets with the source IP address 192.168.1.1/24.
•
Deny all packets with the source IP address 192.168.1.2/24.
Figure 3 Network diagram