Chapter4ServiceConguration
Syntax
rule<1-500>{permit|deny}arp{[cos<0-7>][<vlan-id>[<vlan-mask>]][<dest-mac><dmac-mas
k>|any]}
ParameterDescription
ParameterDescription
<1-500>Rulenumber.
permitIftheconditionmatches,accessispermitted.
denyIftheconditionmatches,accessisdenied.
arp
ThisruleisonlyvalidforARPpacket.Non-ARPpacketignores
thisrule.
cos<0-7>
Thisruleisonlyvalidforthecos-speciedmessage.Other
messagesignorethisrule.Therangeofcosis0to7.
<vlan-id>
ThisruleisonlyvalidformessageswiththespeciedVLANID.
Ignorethisruleforothermessages.TheruleofVLANIDis1
to4094.
<vlan-mask>OptionalVLANmask.Thedefaultvalueis0xfff.
<dest-mac>DestinationMACaddressofthetransmittedpacket.
<dmac-mask>DestinationMACmask.
any
TheanykeywordisusedastheabbreviationofdestinationMAC
address00.00.00.00.00.00andmask00.00.00.00.00.00.
Guidelines
TheARPrulecanmatchcoselds,VLANelds,source-speciedMACs,anysource
MACs,destination-speciedMACs,andanydestinationMACs.
4.13.59egress-acllinkruletype-other
Purpose
Thiscommandsetstherulethatthelayer–2egressACLmatchestheruleexceptIP/ARP .
CommandMode
Layer2egressACLcongurationmode
Syntax
rule<1-500>{permit|deny}other{[ether-type<1501-65535>|dsap-ssap<0-65535>][co
s<0-7>][<vlan-id>[<vlan-mask>]][<source-mac><smac-mask>|any][<dest-mac><dmac-mask>|
any]}
4-271
SJ-20131111172707-003|2013-11-27(R1.0)ZTEProprietaryandCondential