Configure the traffic-filter command to filter packets

28

On Eth2/0/0, you can configure packet filtering based on an ACL that permits packets with source IP address 192.168.0.2/32 as follows:
system-view
[Huawei] acl 3000
[Huawei-acl-adv-3000] rule 5 permit ip source 192.168.0.2 0
[Huawei-acl-adv-3000] quit
[Huawei] interface ethernet 2/0/0
[Huawei-Ethernet2/0/0] traffic-filter inbound acl 3000

Other related questions:
Configure the traffic-filter command to filter packets
On Eth2/0/0, you can configure packet filtering based on an ACL that permits packets with source IP address 192.168.0.2/32 as follows: system-view [Huawei] acl 3000 [Huawei-acl-adv-3000] rule 5 permit ip source 192.168.0.2 0 [Huawei-acl-adv-3000] quit [Huawei] interface ethernet 2/0/0 [Huawei-Ethernet2/0/0] traffic-filter inbound acl 3000

Does a VLANIF interface on an S series switch support packet filtering configured using the traffic-policy command
You cannot run the traffic-filter command to configure packet filtering on a VLANIF interface of S series switches (except the S1700). You can run the traffic-filter command in the following interface views: - Ethernet interface view, such as the GE interface view and the XGE interface view. The specific Ethernet interface view is determined by the switch and card models. - Logical interface view, including the Eth-Trunk interface view and the port group view, but not including the VLANIF interface view.

How to configure packet filtering on S series switches
For details about packet filtering configuration examples on S series switches (except the S1700), see "Example for Configuring a Traffic Policy to Limit Access Between Network Segments" in Typical QoS Configuration. Configurations on different models are the same, and configurations on the S series fixed switches, S7700 and S9700 are used as examples. Note: This configuration example does not apply to the S2700SI.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top