beautypg.com

H3C Technologies H3C SecPath F1000-E User Manual

Page 294

background image

269

To do…

Use the command…

Remarks

Add the interface and the VLAN
interface to a security zone.

Enter the Web page and select
System > Zone. On the modify
zone page, add the

ten-GigabitEthernet interface and

the VLAN interface to the security
zone.

Required
This zone is for incoming packets.

Create another VLAN interface
and enter its view

interface vlan-interface
vlan-interface-id

Required
The vlan-interface-id must be the ID
of the other VLAN created on the

switch.

Assign an IP address to the VLAN
interface

ip address ip-address { mask |
mask-length } [ sub ]

Required
By default, the VLAN interface has
no IP address.

Add the interface and the VLAN
interface to a security zone

Enter the Web page and select
System > Zone. On the modify

zone page, add the

ten-GigabitEthernet interface and
the VLAN interface to the security

zone.

Required
This zone is for outgoing packets.

Displaying and maintaining inter-VLAN Layer 3 forwarding

To do…

Use the command…

Remarks

Display brief interface information

display brief interface
[ interface-type [ interface-number

| interface-number.subnumber ] ]

[ | { begin | include | exclude }
text ]

Available in any view

Display interface/subinterface
state and related information

display interface [ interface-type
[interface-number |

interface-number.subnumber ] ]

Available in any view

Clear interface/subinterface
statistics

reset counters interface
[ interface-type [ interface-number

| interface-number.subnumber ] ]

Available in user view

Display VLAN information

display vlan [ vlan-id1 [ to
vlan-id2 ] | all | dynamic |
interface interface-type

interface-number.subnumber |

reserved | static ]

Available in any view