交换机版本
H3C Comware Software, Version 7.1.070, Release 1312 Copyright (c) 2004-2019 New H3C Technologies Co., Ltd. All rights reserved. H3C S5560-34C-EI uptime is 1 week, 2 days, 4 hours, 19 minutes Last reboot reason : Cold reboot Boot image: flash:/s5560ei-cmw710-boot-r1312.bin Boot image version: 7.1.070, Release 1312 Compiled Nov 19 2019 11:00:00 System image: flash:/s5560ei-cmw710-system-r1312.bin System image version: 7.1.070, Release 1312 Compiled Nov 19 2019 11:00:00 Slot 1: Uptime is 1 week,2 days,4 hours,19 minutes S5560-34C-EI with 2 Processor BOARD TYPE: S5560-34C-EI DRAM: 1984M bytes FLASH: 512M bytes PCB 1 Version: VER.A Bootrom Version: 128 CPLD 1 Version: 001 CPLD 2 Version: 001 Release Version: H3C S5560-34C-EI-1312 Patch Version : None Reboot Cause : ColdReboot [SubSlot 0] 20GE+8COMBO+4SFP Plus
acl advanced name MGMT-ACL
rule 0 permit tcp destination-port eq 22
rule 5 permit tcp destination-port eq www
rule 10 permit tcp destination-port eq 443
rule 15 permit tcp destination-port eq 3389
rule 20 permit tcp destination-port eq 60028
interface Vlan-interface900
description connect to MGMTDevices
ip address 172.27.1.252 255.255.255.0
vrrp vrid 90 virtual-ip 172.27.1.254
vrrp vrid 90 priority 120
packet-filter name MGMT-ACL inbound
packet-filter name MGMT-ACL outbound
[SW01]disp acl all
Advanced IPv4 ACL named MGMT-ACL, 5 rules, ACL's step is 5, start ID is 0
rule 0 permit tcp destination-port eq 22
rule 5 permit tcp destination-port eq www
rule 10 permit tcp destination-port eq 443
rule 15 permit tcp destination-port eq 3389
rule 20 permit tcp destination-port eq 60028
没有一条命中,不知道错在哪里?谢谢
(0)
抓包看下有没有rule规则匹配到的流量
(0)
匹配不是应该有显示吗?
[CUSC-TG-Core-SW01]disp acl all Advanced IPv4 ACL named MGMT-ACL, 5 rules, ACL's step is 5, start ID is 0 rule 0 permit tcp destination-port eq 22 rule 5 permit tcp destination-port eq www rule 10 permit tcp destination-port eq 443 rule 15 permit tcp destination-port eq 3389 rule 20 permit tcp destination-port eq 60028
这个命令后面不是应该有匹配条目吗?
加了,没有命中。
谢谢 我试试
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
谢谢 我试试