网络流量控制---ACL与traffic-filter,acl访问控制列表,匹配感兴趣的数据,与相应的工具对数据进行处理,本次与traffic-filter流量过滤一起,对相应的流量数据进行限制或者放行。
在MSR路由器显示信息如下:Aclnumber2000Rule0permitsource192.168.0.00.0.0.255Aclnumber2002Rule0permitsource192.168.2.00.0.0.255#Trafficclassifier2operatorandif-matchacl2002Trafficclassifier1operatorandif-matchacl2000#Trafficbehavior2Queueafbandwidthpct30trafficbehavior1Queueefbandwidthpct30cbs-ratio25#Qospolictest...
acl number 2000 rule 5 deny source 192.168.2.1 0 //阻止PC1访问服务器 interface GigabitEthernet0/0/0 traffic-filter outbound acl 2000 //将接口设为流量流出,此命令用来在接口上配置基于ACL对报文进行过滤。inbound是在接口入方向上配置报文过滤;outbound是在接口出方向上配置报文过滤 扩展ACL配置 为路由器...
通过traffic-filter调用 <Huawei>sys [Huawei]acl 3000 //创建高级ACL(3000~3999) [Huawei-acl-adv-3000] [Huawei-acl-adv-3000]rule permit ip source192.168.1.0 0.0.0.255 destination 192.168.2.0 0.0.0.255//配置允许192.168.1.0段去访问192.168.2.0段 [Huawei-acl-adv-3000]rule deny ip source192.168.1.0...
traffic-filter outbound acl 3000 三、NAT 1.静态NAT nat static enable nat static global 12.1.1.2 inside 192.168.1.1 2. 动态 NAT nat address-group 1 12.1.1.2 12.1.1.4 acl 2000 rule 10 permit source 192.168.1.0 0.0.0.255 interface g0/0/1 ...
在MSR路由器显示信息如下:Aclnumber2000Rule0permitsource192.168.0.00.0.0.255Aclnumber2002Rule0permitsource192.168.2.00.0.0.255#Trafficclassifier2operatorandif-matchacl2002Trafficclassifier1operatorandif-matchacl2000#Trafficbehavior2Queueafbandwidthpct30trafficbehavior1Queueefbandwidthpct30cbs-ratio25#Qospolictest...
管理员希望所有主机每天在8:00-17:00不能访问Internet,则在GO/0/1的接口配量中traffic-fillteroutbound需要绑定哪个ACL规则()A. time-rangeam9topm508:00toworking-dayAclnumber2003rule5denytime-rangeam9topjni5 B. time-rangeam9topm508:00to17:00off-day#aclnumber2004rule5permittime-range C. time-...
现在增加如下配置Acl number 2000Rule 10 permit source 10.0.1.10Traffic classifier testIf-match ad 2000Traffic behavior testRemark dscp cs3Traffic policy testClassfier test behavior testInterface Gigabitethernet0/0/1Ip address 10.0.12.1 255.255.255.0Traffic-policy test outbound...
(单选题)如图所示的网络,管理员希望所有主机都不能访问Web服务(端口号为80),其它服务正常访问,则在G0/0/1的接口配置“Traffic-filter outbound”中需要绑定哪一选项的ACL规则? A、【acl number 3001】【rule 5 deny udp destination-port eq www】【rule 10 permit ip】...
If-match acl 2003#Traffic behavior 2Filter deny#Qos policy 2Classifier 2 behavior 2#Interface GigabitEthernetO/1Port link-mode routeIp address192.168.1.1255.255.255.0 Qos apply policy 2 outbound则当源地址分别为192.168.2.2、192.168.3.2、192.168.0.2的报文从端口G0/1向外转发时,以下说法不正确的是 ...