Got it

Cannot get the statistics of the ACL match traffic

Created: Jul 16, 2019 12:19:02Latest reply: Jul 16, 2019 12:20:44 153 1 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hi, we are having an issue in which we need to count the packets which toward to the servers 172.13.0.0/16. So we enabled the ACL which display as below to match the traffic, but after a few minutes, the matching counts always keep 0 though there do really is traffic towards to these servers.

Appreciate for any suggestiones.

Advanced Name ACL Match_dete, 16 rules

ACL's step is 5

 rule 5 permit IP source 172.12.0.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 10 permit IP source 172.12.1.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 15 permit IP source 172.12.2.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 20 permit IP source 172.12.3.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 25 permit IP source 172.12.4.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 30 permit IP source 172.12.5.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 35 permit IP source 172.12.6.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 40 permit IP source 172.12.7.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 45 permit IP source 172.12.8.0 0.0.0.255 destination 172.13.0.0 0.0.255.255 (0 times matched)

 rule 50 permit IP source 172.12.0.0 0.0.7.255 destination 172.14.0.0 0.0.255.255 (0 times matched)

 rule 55 permit IP source 172.12.8.0 0.0.0.255 destination 172.14.0.0 0.0.255.255 (0 times matched)

 rule 60 permit IP source 172.12.0.0 0.0.7.255 destination 172.10.0.0 0.0.255.255 (0 times matched)

 rule 65 permit IP source 172.12.8.0 0.0.0.255 destination 172.10.0.0 0.0.255.255 (0 times matched)

 rule 70 permit IP source 172.12.0.0 0.0.7.255 destination 10.10.31.0 0.0.0.255 (0 times matched)

 rule 75 permit IP source 172.12.8.0 0.0.0.255 destination 10.10.32.0 0.0.0.255 (0 times matched)

rule 80 permit IP (0 times matched)


  • x
  • convention:

Featured Answers

Recommended answer

chenhui
Admin Created Jul 16, 2019 12:20:44 Helpful(2) Helpful(2)

It’s normal, the matching counts of the ACL only increase when the packets are processed by the CPU. For those packets which don’t requires processing by the switch, the matching count wouldn’t increase though these traffic match the ACL rules, just as the picture below shows.

If you want to count the packets, you are kindly advised to enable the traffic policy statistics.


Please check https://support.huawei.com/hedex/hdx.do?docid=EDOC1100037168&id=dc_s_fuc_qos_007&text=Configuring%2525252B%252525253Cb%252525253ETraffic%252525253C%252525252Fb%252525253E%2525252BStatistics%2525252Bin%2525252Ba%2525252B%252525253Cb%252525253ETraffic%252525253C%252525252Fb%252525253E%2525252B%252525253Cb%252525253EPolicy%252525253C%252525252Fb%252525253E&lang=en to learn more.


acl match count


 

View more

This article contains more resources

You need to log in to download or view. No account? Register

x
  • x
  • convention:

All Answers
chenhui
chenhui Admin Created Jul 16, 2019 12:20:44 Helpful(2) Helpful(2)

It’s normal, the matching counts of the ACL only increase when the packets are processed by the CPU. For those packets which don’t requires processing by the switch, the matching count wouldn’t increase though these traffic match the ACL rules, just as the picture below shows.

If you want to count the packets, you are kindly advised to enable the traffic policy statistics.


Please check https://support.huawei.com/hedex/hdx.do?docid=EDOC1100037168&id=dc_s_fuc_qos_007&text=Configuring%2525252B%252525253Cb%252525253ETraffic%252525253C%252525252Fb%252525253E%2525252BStatistics%2525252Bin%2525252Ba%2525252B%252525253Cb%252525253ETraffic%252525253C%252525252Fb%252525253E%2525252B%252525253Cb%252525253EPolicy%252525253C%252525252Fb%252525253E&lang=en to learn more.


acl match count


 

View more

This article contains more resources

You need to log in to download or view. No account? Register

x
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " Privacy."

My Followers

Login and enjoy all the member benefits

Login

Huawei Enterprise Support Community
Huawei Enterprise Support Community
Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.