How to configure and delete a basic ACL on the AR

Configure and delete the basic ACL.
A basic ACL can define rules based on the source IP address of IPv4 packets, VPN instance, fragment flag, and time range. Basic IPv4 ACLs are short for basic ACLs. The number ranges from 2000 to 2999.
Command: rule [ rule-id ] { deny | permit } [ source { source-address source-wildcard | any } | vpn-instance vpn-instance-name | [ fragment | none-first-fragment ] | logging | time-range time-name ] *

descriptions of parameters
rule-id: The value is an integer that ranges from 0 to 4294967294. The device automatically generates a rule ID starting from the step value. By default, the step value is 5. That is, the rule ID starts from 5 and subsequent rule IDs are multiples of 5, that is, 5, 10, 15, and so on.
The specified rule-id is valid only when the configuration mode is used. In automatic mode, the device automatically allocates a rule ID based on the depth-first algorithm.
deny: rejects the packets that meet conditions.
permit: permits the packets that meet conditions.
The source address is in dotted decimal notation.
The wildcard of the source IP address is in dotted decimal notation. The wildcard of the source IP address can be 0, which is equivalent to 0.0.0.0, indicating that the source IP address is a host address.
The wildcard is in dotted decimal notation. When the wildcard is converted to a binary value, the value 0 indicates that the bit is matched and the value 1 indicates that the bit is not matched. The value 0 or l of a binary value can be incontiguous. For example, the IP address is 192.168.1.169 and the wildcard is 0.0.0.172, representing that the network address is 192.168.1.x0x0xx01. The value of x can be 0 or 1.
Example
#  Add a rule to ACL 2001 to permit the packets with the source address 192.168.32.1 to pass through.
 system-view
[Huawei] acl 2001
[Huawei-acl-basic-2001] rule permit source 192.168.32.1 0
#  Delete rule 5 from ACL 2001.
<Huawei> system-view
[Huawei] acl 2001
[Huawei-acl-basic-2001] undo rule 5

Scroll to top