ZXR105250SeriesCommandReference
CommandMode
Layer2ingressACLcongurationmode
Syntax
rule<1-500>{permit|deny}arp{[cos<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-m
ask>|any][<dest-mac><dmac-mask>|any]}
ParameterDescription
ParameterDescription
<1-500>Rulenumber.
permitIftheconditionmatches,accessispermitted.
denyIftheconditionmatches,accessisdenied.
arp
ThisruleisonlyvalidforARPpacket.Non-ARPpacketignores
thisrule.
cos<0-7>
Thisruleisonlyvalidforthecos-speciedmessage.Ignorethis
ruleforothermessages.Therangeofcosis0to7.
<vlan-id>
ThisruleisonlyvalidformessageswiththespeciedVLANID.
Ignorethisruleforothermessages.TheruleofVLANIDis1
to4094.
<vlan-mask>OptionalVLANmask.Thedefaultvalueis0xfff.
<source-mac>SourceMACaddressofthetransmittedpacket.
<smac-mask>SourceMACmask.
any(rst)
TheanykeywordisusedastheabbreviationofthesourceMAC
address00.00.00.00.00.00andthemask00.00.00.00.00.00.
<dest-mac>DestinationMACaddressofthetransmittedpacket.
<dmac-mask>DestinationMACmask.
any(second)
Theanykeywordisusedastheabbreviationofthedestination
MACaddress00.00.00.00.00.00andthemask00.00.00.00.00.00.
Guidelines
TheARPrulecanmatchARPpacketswithcoselds,VLANelds,speciedsourceMAC,
anysourceMAC,specieddestinationMAC,oranydestinationMAC.
4.13.22ingress-acllinkruletype-other
Purpose
Thiscommandsetstherulethatthelayer–2ingressACLmatchestheruleexceptIP/ARP .
4-230
SJ-20131111172707-003|2013-11-27(R1.0)ZTEProprietaryandCondential