Vlan44 - 10.10.44.1 255.255.255.0 Vlan122 - 10.0.122.1 255.255.255.0 Vlan152 - 10.0.152.1 255.255.255.0 Vlan161 - 10.0.161.1 255.255.255.0 Vlan162 - 10.0.162.1 255.255.255.0 Vlan171 - 10.0.171.1 255.255.255.0 上述Vlan中 我想实现 所有Vlan禁止通讯Vlan152下的所有机器Vlan152也禁止和所有Vlan通讯 ACL策略: [Core-SW]display acl all Advanced IPv4 ACL named vlan152-in-out-block, 7 rules, ACL's step is 5, start ID is 0 rule 10 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.20.0 0.0.0.255 rule 20 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.44.0 0.0.0.255 rule 30 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.122.0 0.0.0.255 rule 40 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.161.0 0.0.0.255 rule 50 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.162.0 0.0.0.255 rule 60 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.171.0 0.0.0.255 rule 70 deny ip source 10.0.152.0 0.0.0.255 destination 10.10.10.0 0.0.0.255 ACL策略引用到Vlan152 interface Vlan-interface152 ip address 10.0.152.1 255.255.255.0 packet-filter name vlan152-in-out-block inbound packet-filter name vlan152-in-out-block outbound
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论