Configuring source
|
| Step |
| Command |
| Remarks | ||
1. | Enter system view. |
| N/A | |||||
|
|
|
|
|
|
|
|
|
2. | Create a basic ACL and enter | acl [ ipv6 ] number | By default, no basic ACL | |||||
|
|
| its view, or enter the view of | |||||
|
|
| name ] [ | exists. | ||||
|
|
| an existing basic ACL. | |||||
|
|
|
|
|
|
|
| |
|
|
|
|
|
|
|
| |
|
|
|
| • | For IPv4 networks: |
| By default, a basic ACL | |
|
|
|
|
| rule [ |
| does not contain any rule. | |
|
|
|
|
| [ counting fragment logging | The logging keyword takes | ||
|
|
|
|
| source { | effect only when the module | ||
|
|
|
|
| any } | |||
|
|
|
|
| (such as the firewall) using | |||
|
|
|
|
| ||||
|
|
|
|
| the ACL supports the | |||
|
|
|
|
|
|
| ||
|
| 3. Configure an ACL rule. | • | For IPv6 networks: |
| logging function. | ||
|
|
| rule [ |
| NOTE: | |||
|
|
|
|
|
| |||
|
|
|
|
| [ counting fragment logging | Support for the | ||
|
|
|
|
| routing [ type | |||
|
|
|
|
| argument depends on the | |||
|
|
|
|
| { |
| ||
|
|
|
|
|
| device model. For more | ||
|
|
|
|
| ||||
|
|
|
|
| information, see Getting | |||
|
|
|
|
|
| |||
|
|
|
|
|
| Started Command | ||
|
|
|
|
| ||||
|
|
|
|
| Reference. | |||
|
|
|
|
|
|
| ||
4. | Exit the basic ACL view. | quit |
| N/A | ||||
|
|
|
|
|
|
|
| |
5. | Enter user interface view. |
| N/A | |||||
[ |
| |||||||
|
|
|
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| • | inbound: Filters |
|
|
|
|
|
|
|
| incoming packets. |
|
|
|
|
|
|
| • | outbound: Filters |
|
|
|
|
|
|
|
| outgoing packets. |
6. | Use the ACL to control user | acl [ ipv6 ] |
| NOTE: | ||||
|
|
| logins by source IP address. | outbound } |
| Support for the ipv6 | ||
|
|
|
|
|
|
| keyword depends on the | |
|
|
|
|
|
|
| device model. For more | |
|
|
|
|
|
|
| information, see Getting | |
|
|
|
|
|
|
| Started Command | |
|
|
|
|
|
|
| Reference. | |
Configuring source/destination |
|
|
| |||||
|
|
|
|
|
|
| ||
|
| Step |
| Command | Remarks |
| ||
1. | Enter system view. | N/A |
|
| ||||
|
|
|
|
|
|
| ||
|
|
|
|
|
| By default, no advanced ACL | ||
2. | Create an advanced ACL and |
|
| exists. |
|
| ||
acl [ ipv6 ] number | NOTE: |
|
| |||||
|
|
| enter its view, or enter the |
|
| |||
|
|
| view of an existing advanced | [ name name ] [ | Support for the ipv6 keyword | |||
|
|
| { config auto } ] | |||||
|
|
| ACL. | depends on the device model. For | ||||
|
|
|
|
|
more information, see Getting Started Command Reference.
114