ZXR108900SeriesUserManual(BasicCongurationVolume)
�Layer2ACL
Source/destinationMACaddress,sourceVLANID,Layer2
Ethernetprotocoltypeand802.1ppriorityvaluearematched
againsttheACL.
�HybridACL
Source/destinationMACaddress,sourceVLANID,source/des-
tinationIPaddress,TCPsource/destinationportnumber ,UDP
source/destinationportnumberarematchedagainsttheACL.
�StandardIPv6ACL
OnlysourceIPv6addressismatched.
�ExtendedIPv6ACL
Source/DestinationIPv6addressismatched.
�User-DenedACL
Thenumberoftagsandbyteoffsetvaluearematched.
EachACLhasanaccesslistnumbertoidentify.Theaccesslist
numberisanumber .Theaccesslistnumberrangesofdifferent
typesofACLsareshowninT
able6.
TABLE6ACLDESCRIPTIONS
ACLType
AccessListNumber
StandardACL
Therangeisfrom1to99.Theexpandedrange
isfrom1000to1499.
ExtendedACL
Therangeisfrom100to199.Theexpanded
rangeisfrom1500to1999.
Layer2ACL
Therangeisfrom200to299.
HybridACL
Therangeisfrom300to349.
StandardIPv6ACL
Therangeisfrom2000to2499.
ExtendedIPv6ACL
Therangeisfrom2500to2999.
User-DenedACLTherangeisfrom3000to3499.
EachACLsupportsupto1000ruleswiththecodesrangingfrom
1to1000.
NP-BasedACLOverview
ToapplytheconguredACLtophysicalport,VLANorSmartgroup
virtualinterface,usercanchoosecommonprocessingmodeor
NetworkProcessor(NP)mode.AsforNPprocessingmode—based
ACL,theswitchmustbeconguredwithNPfastenersubcard,or
ACLwillnotbevalid.
NPprocessingmode—basedACLisnotconictedwithcommon
processingmode—basedACL.Thatis,thesameobject(aphysi-
78CondentialandProprietaryInformationofZTECORPORATION