设备:s5820V2-54QS
[H3C]vlan 10 to 40
[H3C-vlan10]port g1/0/1
[H3C-vlan20]port g1/0/2
[H3C-vlan30]port g1/0/3
[H3C-vlan40]port g1/0/4
[H3C]int vlan 10
[H3C-Vlan-interface10]ip add 192.168.10.1 255.255.255.0
[H3C]int vlan 20
[H3C-Vlan-interface20]ip add 192.168.20.1 255.255.255.0
[H3C]int vlan 30
[H3C-Vlan-interface30]ip add 192.168.30.1 255.255.255.0
[H3C]int vlan 40
[H3C-Vlan-interface40]ip add 192.168.1.2 255.255.255.0
[H3C]acl adv 3000
[H3C-acl-ipv4-adv-3000]rule 1 deny ip source 192.168.10.1 0.255.255.255 destinat ion 192.168.20.1 0.255.255.255
[H3C-acl-ipv4-adv-3000]quit
[H3C]int g1/0/1
[H3C-GigabitEthernet1/0/1]packet-filter 3000 inbound
[H3C]dis acl all
Advanced IPv4 ACL 3000, 1 rule, ACL's step is 5
rule 1 deny ip source 192.0.0.0 0.255.255.255 destination 192.0.0.0 0.255.255.255
问题是 配置到目前 192.168.10.1 还能PING 通192.168.20.1
s5820V2-54QS ---
1.VLAN10(192.168.10.1)端口G1/0/1
2.VLAN20(192.168.20.1)端口G1/0/2
3.VLAN30(192.168.30.1)端口G1/0/3
4.VLAN40(192.168.1.2)端口G1/0/4 上联路由器
vlan 10 20 30 通过VLAN 40 连外网,,VLAN 10 20 30 之间不能互通。求完整配置,谢谢。
(0)
您好,请知:
尝试inbound和Outbound都应用看下,以下是参考命令:
int gi 1/0/1
packet-filter 3000 inbound
packet-filter 3000 outbound
quit
如果还是不行,可尝试应用到int vlan 下。
(0)
暂无评论
[H3C]int vlan 10
[H3C-Vlan-interface10]packet-filter 3000 inbound
这样配置后VLAN10 (192.168.10.1) 跟其他VLAN 不通了
怎么让VLAN 10 经过VLAN40上外网?
[H3C-acl-ipv4-adv-3000]rule 1 deny ip source 192.168.10.1 0.255.255.255 destinat ion 192.168.20.1 0.255.255.255
[H3C]dis acl all
Advanced IPv4 ACL 3000, 1 rule, ACL"s step is 5
rule 1 deny ip source 192.0.0.0 0.255.255.255 destination 192.0.0.0 0.255.255.255 ???? 怎么跟配置的不一样
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论