beautypg.com

Packet filtering configuration example, Network requirements, Configuration procedure – H3C Technologies H3C SecPath F1000-E User Manual

Page 337

background image

312

Packet filtering configuration example

Network requirements

As shown in

Figure 214

, configure a QoS policy to filter the incoming packets whose TCP source port is

not 21 on GigabitEthernet 0/1.

Figure 214 Network diagram

Configuration procedure

1.

Configure ACLs:
# Create ACL 3000, and configure a rule to match packets whose TCP source port is not 21.

{

Select Firewall > ACL from the navigation tree, and click Add. Perform configuration on the
page shown in

Figure 215

.

Figure 215 Creating ACL 3000

{

Enter 3000 as the ACL number.

{

Select Config from the Match Order list.

{

Click Apply.

{

Click the

icon for ACL 3000 on the ACL list, and click Add. Perform configuration on the

page shown in

Figure 216

.