beautypg.com

Configuring a basic acl, Configuring an ipv4 basic acl, Configuring an ipv6 basic acl – H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 12

background image

5

Configuring a basic ACL

Configuring an IPv4 basic ACL

IPv4 basic ACLs match packets based only on source IP addresses.
Follow these steps to configure an IPv4 basic ACL:

To do…

Use the command…

Remarks

Enter system view

system-view

––

Create an IPv4 basic ACL and
enter its view

acl number acl-number [ name
acl-name ] [ match-order { auto |

config } ]

Required
By default, no ACL exists.
IPv4 basic ACLs are numbered in the
range 2000 to 2999.
You can use the acl name acl-name

command to enter the view of a named
IPv4 ACL.

Configure a description for the
IPv4 basic ACL

description text

Optional
By default, an IPv4 basic ACL has no
ACL description.

Set the rule numbering step

step step-value

Optional
5 by default.

Create or edit a rule

rule [ rule-id ] { deny | permit }
[ fragment | source { sour-addr
sour-wildcard
| any } |

time-range time-range-name ] *

Required
By default, an IPv4 basic ACL does not
contain any rule.

Add or edit a rule comment

rule rule-id comment text

Optional
By default, an IPv4 ACL rule has no rule
description.

Configuring an IPv6 basic ACL

Follow these steps to configure an IPv6 basic ACL:

To do…

Use the command…

Remarks

Enter system view

system-view

––

Create an IPv6 basic ACL
view and enter its view

acl ipv6 number acl6-number [ name
acl6-name ] [ match-order { auto | config } ]

Required
By default, no ACL exists.
IPv6 basic ACLs are numbered in
the range 2000 to 2999.
You can use the acl ipv6 name

acl6-name command to enter the
view of a named IPv6 ACL.

Configure a description
for the IPv6 basic ACL

description text

Optional
By default, an IPv6 basic ACL has
no ACL description.

Set the rule numbering
step

step step-value

Optional
5 by default