Chapter4ServiceConguration
CommandFunction
zte(egress-hybrid-acl)#rule<1-500>{permit|deny}ipv6any{<
source-ipv6addr><sipv6-mask>|any}{<destination-ipv6addr><dipv6-mask>|
any}[<vlan-id>]
SetsahybridegressACLwhich
matchestheIPv6packet.
zte(egress-hybrid-acl)#rule<1-500>{permit|deny}all
SetsahybridegressACLwhich
matchesanypacket.
zte(cfg)#clearegress-aclhybridnumber<700-799>ClearsahybridegressACLinstance.
move<1-500>{after|before}<1-500>(allACLcongurationmodes)SortsaruleinACLinstance.
clearrule<1-500>(allACLcongurationmodes)ClearsoneruleinACLinstance.
zte(cfg)#showvlan-range<vlan-range>
Displaysthebestmaskconguration
whenVLANIDismatchedinbatch.
zte(cfg)#showaclbinding{all|port[<portlist>]|vlan[<vlanlist>]}
Displaysthecongurationinformation
thatACLisboundtotheinterface.
zte(cfg)#showaclconfigDisplaysACLsummaryconguration.
zte(cfg)#showaclconfig[<1-800>|name<word>][active|command|deny
|passive|permit|policy|rule<1-500>|snmp|time-range]
Displaysthedetailedcongurationof
ACLinstance.
ACLCongurationInstance
lCongurationDescription
AsshowninFigure4-13,congureACLintheswitchtorealizethefollowingfunctions.
Forbidtheuserstoaccesstheexteriornetthroughthegatewayfrom9:00to18:00.
Thegatewayconnectswiththeswitchonport26.TheclientPCconnectsswitchon
port1-24.Alltheusersaccesstheexteriornetworkthroughthegateway192.168.0.1.
Figure4-13ACLCongurationInstance
4-49
SJ-20120409144109-002|2012-07-02(R1.0)ZTEProprietaryandCondential