node 20 permit: if-match acl 35XX apply next-hop 2XX.XX.2XX.1XX direct track 100 在测试的过程中发现,如果将node5中的if-match语句删掉,那么默认数据就会全匹配,所有链路都会从内部数据专线跑到总部公司,总部公司没有我这边的路由,我这边于是就会断网,后来回滚操作,发现了这个原因,切记,一定不能删掉if-...
# 定义类匹配ACL flow。 <Sysname> system-view [Sysname] traffic classifier class1 [Sysname-classifier-class1] if-match acl name flow # 定义类匹配IPv6 ACL3101。 <Sysname> system-view [Sysname] traffic classifier class1 [Sysname-classifier-class1] if-match acl ipv6 3101 # 定义类匹配IPv6 ACL...
if-match acl 2000 apply next-hop 1.1.1.1 表1-2 display ip policy-based-route命令显示信息描述表 字段 描述 Policy name 策略名 node 1 permit 节点1的匹配模式为允许 if-match acl 满足ACL的报文被匹配 apply next-hop 为匹配的报文指定下一跳 【相关命令】 · policy-based-route 1.1.12 disp...
if-match acl 3001 //引入acl 3001 traffic classifier deny operator and 同上 if-match acl 3000 traffic behavior permit 定义一个名称为permit的行为 filter permit 动作为permit(允许)traffic behavior deny同上 filter deny 动作是拒绝 qos policy ghj 定义一个qos策略 classifier permit ...
if-match acl 3100//将ACL与流分类关联 # traffic behavior anti_wana//创建流行为 deny//动作为禁止 statistic enable//使能流量统计(可选) # traffic policy anti_wana match-order config//创建流策略 classifier anti_wana behavior anti_wana//将流分类和流行为进行关联 ...
[Switch-acl6-adv-3002] rule permit ip source 1.0.0.0 0.255.255.255 2.配置端口Ethernet1/0/1入方向的IPv4报文过滤 #配置拒绝接收源地址为1.1.1.1报文的类和流行为 [Switch] traffic classifier 1 [Switch-classifier-1] if-match acl 3001 [Switch-classifier-1] quit ...
1. # 定义acl acl number 3001 rule deny ip source 1.1.1.1 0 acl number 3002 rule permit ip source 1.0.0.0 0.255.255.255 2.# 配置拒绝接收源地址为1.1.1.1报文的类和流行为 traffic classifier 1 if-match acl 3001 traffic behavior 1 filter deny # 配置允许其他源地址的类和流行为 tr...
[H3C-acl-adv-3000] rule 2 denyipsource any destination 129.110.1.2 0.0.0.0 time-range Huawei [H3C-acl-adv-3000] quit 4.定义流分类 [H3C] traffic classifierabc [H3C-classifier-abc]if-matchacl3000 [H3C-classifier-abc]quit 5.定义流行为,确定禁止符合流分类的报文 ...
# 定义aclacl number 3001rule deny ip source 0acl number 3002rule permit ip source 552.# 配置拒绝接收源地址为报文的类和流行为traffic classifier 1if-match acl 3001traffic behavior 1filter deny# 配置允许其他源地址的类和流行为traffic classifier 2if-match acl 30 3、02traffic behavior 2filter ...
[H3C-acl-adv-3000] quit 4.定义流分类 [H3C] traffic classifier abc [H3C-classifier-abc]if-match acl 3000 [H3C-classifier-abc]quit 5.定义流行为,确定禁止符合流分类的报文 [H3C] traffic behavior abc [H3C-behavior-abc] filter deny [H3C-behavior-abc] quit ...