在S7610上使用三层聚合口RAGG10对接客户侧设备,业务网关在S7610的RAGG10上,例如:网关为192.168.100.1/24,客户要求指定的IP地址能访问出去(192.168.100.2-10的地址,其他不允许通过),在RAGG10下调用packert-filter acl inbound不生效。
[HUNHH-ZHL4L-S7610-IDC-CE1-Route-Aggregation10]packet-filter 2000 inbound Failed to apply IPv4 ACL 2000 to the inbound direction of interface Route-Aggregation10 on slot 0, 1, 2, 5, 6, 7, 8. [HUNHH-ZHL4L-S7610-IDC-CE1-Route-Aggregation10]%May 26 10:11:22:391 2022 HUNHH-ZHL4L-S7610-IDC-CE1 PFILTER/3/PFILTER_IF_NOT_SUPPORT: -MDC=1; Failed to apply or refresh IPv4 ACL 2000 to the inbound direction of interface Route-Aggregation10. The ACL is not supported.
直接在物理接口下调用是否生效
Aggregate Interface: Route-Aggregation10
Aggregation Mode: Static
Loadsharing Type: Shar
Management VLANs: None Port Status Priority Oper-Key
XGE0/0/2(R) S 32768 6
XGE1/0/7 S 32768 6
interface Ten-GigabitEthernet0/0/2
port link-mode route
packet-filter 2000 inbound
port link-aggregation group 10
查看结果:
display packet-filter statistics sum inbound 2000
Sum: Inbound
policy: IPv4 ACL 2000
rule 10000 deny
Totally 0 packets permitted, 0 packets denied
Totally 0% permitted, 0% denied
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
display packet-filter statistics