Step
1.
Enter system view.
2.
Enter interface view.
3.
Apply an IPv6 basic or IPv6
advanced ACL to the interface
to filter IPv6 packets.
Displaying and maintaining ACLs
Task
Display configuration and match
statistics for one or all IPv4 ACLs.
Display configuration and match
statistics for one or all IPv6 ACLs.
Display the usage of ACL rules.
Display the application status of
packet filtering ACLs on interfaces.
Display the configuration and
status of one or all time ranges.
Clear statistics for one or all IPv4
ACLs.
Clear statistics for one or all IPv6
basic and advanced ACLs.
Configuration example of using ACL for device
management
Network requirements
As shown in
Host A can telnet to the switch only during the working time (8:30 to 18:00 of every working day).
•
•
As a TFTP client, the switch can get files from only the server 1 1.1.1.100. This makes sure that the
switch saves only authorized files.
Figure
1, configure ACLs so that:
Command
system-view
interface interface-type
interface-number
packet-filter ipv6 { acl6-number |
name acl6-name } { inbound |
outbound }
Command
display acl { acl-number | all | name
acl-name } [ slot slot-number ] [ | { begin |
exclude | include } regular-expression ]
display acl ipv6 { acl6-number | all | name
acl6-name } [ slot slot-number ] [ | { begin |
exclude | include } regular-expression ]
display acl resource [ slot slot-number ] [ |
{ begin | exclude | include }
regular-expression ]
display packet-filter { { all | interface
interface-type interface-number } [ inbound |
outbound ] | interface vlan-interface
vlan-interface-number [ inbound | outbound ]
[ slot slot-number ] } [ | { begin | exclude |
include } regular-expression ]
display time-range { time-range-name | all }
[ | { begin | exclude | include }
regular-expression ]
reset acl counter { acl-number | all | name
acl-name }
reset acl ipv6 counter { acl6-number | all |
name acl6-name }
11
Remarks
N/A
N/A
By default, no IPv6 ACL is applied
to the interface.
Remarks
Available in any view
Available in any view
Available in any view
Available in any view
Available in any view
Available in user view
Available in user view