These are the steps to apply a simple ACL to an interface using traffic policy.
# Configure ACL rules for matching data flows:
<NEA> system-view
[~NEA] acl number 2001
[*NEA-acl-basic-2001] rule permit source 1.1.1.1 0.0.0.0
[*NEA-acl-basic-2001]commit
[~NEA-acl-basic-2001] quit
# Configure traffic classifiers and define ACL-based traffic classifier matching rules.
[~NEA] traffic classifier class1
[*NEA-classifier-class1] if-match acl 2001
[*NEA-classifier-class1] commit
[~NEA-classifier-class1] quit
# Define a traffic behavior.
[~NEA] traffic behavior behavior1
[*NEA-behavior-behavior1] deny
[*NEA-behavior-behavior1] commit
[~NEA-behavior-behavior1] quit
# Define a traffic policy to associate traffic classifier with traffic behavior.
[~NEA] traffic policy policy1
[*NEA-trafficpolicy-policy1] classifier class1 behavior behavior1
[*NEA-trafficpolicy-policy1] commit
[~NEA-trafficpolicy-policy1] quit
# Apply the traffic policy to GE 0/1/0.
[~NEA] interface gigabitethernet 0/1/0
[~NEA-GigabitEthernet0/1/0] undo shutdown
[*NEA-GigabitEthernet0/1/0] traffic-policy policy1 inbound
[*NEA-GigabitEthernet0/1/0] commit