10 ACL Configuration
About This Chapter
This chapter explains how to filter data packets on an AR1200-S by defining an Access Control
List (ACL) to determine allowed packet types.
10.1 ACL Overview
This section describes the basic concept of ACLs.
10.2 ACL Features Supported by the AR1200-S
10.3 Configuring a Basic ACL
A basic ACL classifies IPv4 packets based on information such as source IP addresses, fragment
flags, and time ranges.
10.4 Configuring an Advanced ACL
An advanced ACL classifies IPv4 packets based on information such as source and destination
IP addresses, source and destination port numbers, packet priorities, and time ranges.
10.5 Configuring a Layer 2 ACL
A Layer 2 ACL classifies Layer 2 packets with the Ethernet protocol type of Ethernet_II based
on information such as the source and destination MAC addresses, and Layer 2 protocol type.
10.6 Configuration Examples
This section provides several configuration examples of ACLs.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security 10 ACL Configuration
Issue 02 (2012-03-30) Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
184