• 全部
  • 经验案例
  • 典型配置
  • 技术公告
  • FAQ
  • 漏洞说明
  • 全部
  • 全部
  • 大数据引擎
  • 知了引擎
产品线
搜索
取消
案例类型
发布者
是否解决
是否官方
时间
搜索引擎
匹配模式
高级搜索

H3C5500v3 启动时就提示资源不足,策略路由失败

2024-05-23提问
  • 0关注
  • 0收藏,195浏览
粉丝:0人 关注:0人

问题描述:

组网及组网描述:

  1. #
  2. policy-based-route test permit node 2
  3. if-match acl 3901
  4. #
  5. policy-based-route test permit node 6
  6. if-match acl 3910
  7. apply next-hop 10.2.200.249 direct
  8. #
  9. policy-based-route test permit node 8
  10. if-match acl 3810
  11. apply next-hop 10.2.100.254 direct
  12. #
  13. interface NULL0
  14. #
  15. interface Vlan-interface7
  16. ip address 10.1.7.254 255.255.255.0
  17. packet-filter 3007 outbound hardware-count
  18. ip policy-based-route test
  19. #
  20. interface Vlan-interface8
  21. ip address 10.1.8.254 255.255.255.0
  22. packet-filter 3008 inbound hardware-count
  23. packet-filter 3008 outbound hardware-count
  24. ip policy-based-route test
  25. #
  26. interface Vlan-interface9
  27. ip address 10.1.9.254 255.255.255.0
  28. packet-filter 3019 inbound hardware-count
  29. packet-filter 3019 outbound
  30. ip policy-based-route test
  31. #
  32. interface Vlan-interface10
  33. ip address 10.1.10.254 255.255.255.0
  34. packet-filter 3010 inbound hardware-count
  35. packet-filter 3010 outbound
  36. ip policy-based-route test
  37. #
  38. interface Vlan-interface11
  39. ip address 10.1.11.254 255.255.255.0
  40. packet-filter 3011 inbound
  41. packet-filter 3011 outbound
  42. ip policy-based-route test
  43. #
  44. interface Vlan-interface12
  45. ip address 10.1.12.254 255.255.255.0
  46. packet-filter 3012 inbound
  47. packet-filter 3012 outbound
  48. ip policy-based-route test
  49. #
  50. interface Vlan-interface13
  51. ip address 10.1.13.254 255.255.255.0
  52. packet-filter 3013 inbound
  53. packet-filter 3013 outbound
  54. ip policy-based-route test
  55. #
  56. interface Vlan-interface14
  57. ip address 10.1.14.254 255.255.255.0
  58. packet-filter 3014 outbound
  59. ip policy-based-route test
  60. #
  61. interface Vlan-interface17
  62. ip address 10.1.17.254 255.255.255.0
  63. packet-filter 3017 inbound
  64. packet-filter 3017 outbound
  65. ip policy-based-route test
  66. #
  67. interface Vlan-interface100
  68. ip address 10.2.100.253 255.255.255.0
  69. #
  70. interface Vlan-interface200
  71. ip address 10.2.200.253 255.255.255.0
  72. packet-filter 3820 inbound hardware-count
  73. packet-filter 3820 outbound hardware-count
  74. #
  75. interface GigabitEthernet1/0/1
  76. port link-mode bridge
  77. port link-type trunk
  78. port trunk permit vlan all
  79. #
  80. interface GigabitEthernet1/0/2
  81. port link-mode bridge
  82. port link-type trunk
  83. port trunk permit vlan all
  84. #
  85. interface GigabitEthernet1/0/3
  86. port link-mode bridge
  87. port link-type trunk
  88. port trunk permit vlan all
  89. #
  90. interface GigabitEthernet1/0/4
  91. port link-mode bridge
  92. port link-type trunk
  93. port trunk permit vlan all
  94. #
  95. interface GigabitEthernet1/0/5
  96. port link-mode bridge
  97. port link-type trunk
  98. port trunk permit vlan all
  99. #
  100. interface GigabitEthernet1/0/6
  101. port link-mode bridge
  102. port link-type trunk
  103. port trunk permit vlan all
  104. #
  105. interface GigabitEthernet1/0/7
  106. port link-mode bridge
  107. port link-type trunk
  108. port trunk permit vlan all
  109. #
  110. interface GigabitEthernet1/0/8
  111. port link-mode bridge
  112. port link-type trunk
  113. port trunk permit vlan all
  114. #
  115. interface GigabitEthernet1/0/9
  116. port link-mode bridge
  117. port link-type trunk
  118. port trunk permit vlan all
  119. #
  120. interface GigabitEthernet1/0/10
  121. port link-mode bridge
  122. port link-type trunk
  123. port trunk permit vlan all
  124. #
  125. interface GigabitEthernet1/0/11
  126. port link-mode bridge
  127. port link-type trunk
  128. port trunk permit vlan all
  129. #
  130. interface GigabitEthernet1/0/12
  131. port link-mode bridge
  132. port link-type trunk
  133. port trunk permit vlan all
  134. #
  135. interface GigabitEthernet1/0/13
  136. port link-mode bridge
  137. port access vlan 7
  138. mirroring-group 1 monitor-port
  139. #
  140. interface GigabitEthernet1/0/14
  141. port link-mode bridge
  142. port link-type trunk
  143. port trunk permit vlan all
  144. port trunk pvid vlan 7
  145. mirroring-group 2 monitor-port
  146. #
  147. interface GigabitEthernet1/0/15
  148. port link-mode bridge
  149. port access vlan 100
  150. qos apply policy zzq outbound 
  151. #
  152. interface GigabitEthernet1/0/16
  153. port link-mode bridge
  154. port access vlan 11
  155. #
  156. interface GigabitEthernet1/0/17
  157. port link-mode bridge
  158. port access vlan 17
  159. #
  160. interface GigabitEthernet1/0/18
  161. port link-mode bridge
  162. port access vlan 10
  163. #
  164. interface GigabitEthernet1/0/19
  165. port link-mode bridge
  166. port access vlan 10
  167. #
  168. interface GigabitEthernet1/0/20
  169. port link-mode bridge
  170. port access vlan 13
  171. #
  172. interface GigabitEthernet1/0/21
  173. port link-mode bridge
  174. port access vlan 10
  175. #
  176. interface GigabitEthernet1/0/22
  177. port link-mode bridge
  178. port access vlan 10
  179. qos apply policy fwq inbound 
  180. #
  181. interface GigabitEthernet1/0/23
  182. port link-mode bridge
  183. port link-type trunk
  184. port trunk permit vlan all
  185. #
  186. interface GigabitEthernet1/0/24
  187. port link-mode bridge
  188. port access vlan 200
  189. qos apply policy fwq outbound 
  190. #
  191. interface GigabitEthernet1/0/25
  192. port link-mode bridge
  193. port access vlan 8
  194. #
  195. interface GigabitEthernet1/0/26
  196. port link-mode bridge
  197. port link-type trunk
  198. port trunk permit vlan 1 8 to 18 100 200
  199. #
  200. interface Ten-GigabitEthernet1/0/27
  201. port link-mode bridge
  202. port access vlan 9
  203. #
  204. interface Ten-GigabitEthernet1/0/28
  205. port link-mode bridge
  206. port access vlan 9
  207. #
  208. acl advanced 3810
  209. description 走ADSL线路并且经过深信服设备
  210. rule 0 permit ip source 10.1.12.0 0.0.0.255
  211. rule 5 permit ip source 10.1.13.0 0.0.0.255
  212. rule 10 permit ip source 10.1.14.0 0.0.0.255
  213. rule 15 permit ip source 10.1.17.0 0.0.0.255
  214. rule 20 permit ip source 10.1.8.0 0.0.0.255
  215. rule 25 permit ip source 10.1.10.108 0
  216. rule 30 permit ip source 10.1.7.0 0.0.0.255
  217. rule 35 permit ip source 10.2.100.252 0
  218. rule 40 permit ip source 10.1.10.64 0
  219. #
  220. #
  221. acl number 3901
  222. description 内网互访
  223. rule 0 permit ip source 10.1.0.0 0.0.255.255 destination 10.1.0.0 0.0.255.255 logging counting
  224. rule 5 permit ip destination 10.2.100.253 0
  225. rule 10 permit ip destination 10.2.100.252 0
  226. #
  227. acl number 3910
  228. description 
  229. rule 4 permit ip source 10.1.7.0 0.0.0.255
  230. rule 5 permit ip source 10.1.14.5 0
  231. rule 5 comment 2
  232. rule 6 permit ip source 10.1.13.5 0
  233. rule 6 comment 
  234. rule 7 permit ip source 10.1.12.5 0
  235. rule 7 comment 2
  236. rule 10 permit ip source 10.1.14.101 0
  237. rule 11 permit ip source 10.1.14.102 0
  238. rule 12 permit ip source 10.1.14.106 0
  239. rule 13 permit ip source 10.1.17.17 0
  240. rule 13 comment 刘
  241. rule 14 permit ip source 10.1.17.18 0
  242. rule 14 comment 
  243. rule 15 permit ip source 10.1.17.15 0
  244. rule 15 comment 
  245. rule 16 permit ip source 10.1.17.19 0
  246. rule 16 comment 
  247. rule 50 permit ip source 10.1.14.100 0
  248. rule 56 permit ip source 10.1.14.134 0
  249. rule 56 comment 
  250. rule 57 permit ip source 10.1.14.130 0
  251. rule 57 comment 
  252. rule 58 permit ip source 10.1.14.136 0
  253. rule 58 comment 
  254. rule 59 permit ip source 10.1.14.131 0
  255. rule 59 comment 
  256. rule 100 permit ip source 10.1.17.2 0
  257. rule 100 comment 会
  258. rule 105 permit ip source 10.1.17.3 0
  259. rule 105 comment 1
  260. rule 110 permit ip source 10.1.17.4 0
  261. rule 110 comment 2
  262. rule 120 permit ip source 10.1.17.6 0
  263. rule 120 comment 3
  264. rule 130 permit ip source 10.1.17.8 0
  265. rule 130 comment 前
  266. rule 140 permit ip source 10.1.17.10 0建
  267. rule 146 permit ip source 100.1.17.7 0 logging counting
  268. rule 146 comment 
  269. rule 150 permit ip source 10.1.17.12 0
  270. rule 150 commen
  271. rule 160 permit ip source 10.10.14.149 0
  272. rule 160 comment CMCCC
  273. rule 170 permit ip source 10.1.17.11 0
  274. rule 170 comment 前
  275. rule 172 permit ip source 10.1.13.3 0
  276. rule 180 permit ip source 10.1.12.3 0
  277. rule 190 permit ip source 10.1.14.3 0
  278. rule 205 permit ip source 10.1.12.2 0
  279. rule 205 comment 钟本
  280. rule 209 permit ip source 10.1.13.124 0
  281. rule 210 permit ip source 10.1.13.2 0
  282. rule 210 comment 钟
  283. rule 211 permit ip source 10.1.13.4 0
  284. rule 211 comment 3号
  285. rule 215 permit ip source 10.1.14.2 0
  286. rule 215 comment 
  287. rule 220 permit ip source 10.1.8.207 0
  288. rule 220 comment 8楼
  289. rule 221 permit ip source 10.1.8.208 0
  290. rule 221 comment 
  291. rule 222 permit ip source 10.1.8.211 0
  292. rule 222 comment 8楼
  293. rule 223 permit ip source 10.1.8.212 0
  294. rule 230 permit ip source 10.1.10.108 0 destination 10.2.200.249 0
  295. rule 230 comment 钟
  296. rule 235 permit ip destination 210.13.122.65 0
  297. rule 235 comment as
  298. #

4 个回答
zhiliao_C1xmlF 知了小白
粉丝:0人 关注:0人

补充问题图片


粉丝:51人 关注:1人

看你的好多vlanfi 下都调用了策略路由,并且ACL 配置得也不少,可能是达到了设备资源上线了。具体多少咱们可能不知道,你可以找400 售前问一下,这个型号的规格是多少

壹号 二段
粉丝:0人 关注:1人

dis qos-acl resource

 用这命令看下acl资源的使用情况

有什么命令能一直看使用资源的状态,这个命令只能看到当前的?

zhiliao_C1xmlF 发表时间:2024-05-23

没办法上专图片了,0% 和62%

zhiliao_C1xmlF 发表时间:2024-05-23

只能看当前的,IFP是入方向,EFP是出方向

壹号 发表时间:2024-05-23
粉丝:189人 关注:1人

删除或者优化下test 策略

编辑答案

你正在编辑答案

如果你要对问题或其他回答进行点评或询问,请使用评论功能。

分享扩散:

提出建议

    +

亲~登录后才可以操作哦!

确定

亲~检测到您登陆的账号未在http://hclhub.h3c.com进行注册

注册后可访问此模块

跳转hclhub

你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作

举报

×

侵犯我的权益 >
对根叔社区有害的内容 >
辱骂、歧视、挑衅等(不友善)

侵犯我的权益

×

泄露了我的隐私 >
侵犯了我企业的权益 >
抄袭了我的内容 >
诽谤我 >
辱骂、歧视、挑衅等(不友善)
骚扰我

泄露了我的隐私

×

您好,当您发现根叔知了上有泄漏您隐私的内容时,您可以向根叔知了进行举报。 请您把以下内容通过邮件发送到pub.zhiliao@h3c.com 邮箱,我们会尽快处理。
  • 1. 您认为哪些内容泄露了您的隐私?(请在邮件中列出您举报的内容、链接地址,并给出简短的说明)
  • 2. 您是谁?(身份证明材料,可以是身份证或护照等证件)

侵犯了我企业的权益

×

您好,当您发现根叔知了上有关于您企业的造谣与诽谤、商业侵权等内容时,您可以向根叔知了进行举报。 请您把以下内容通过邮件发送到 pub.zhiliao@h3c.com 邮箱,我们会在审核后尽快给您答复。
  • 1. 您举报的内容是什么?(请在邮件中列出您举报的内容和链接地址)
  • 2. 您是谁?(身份证明材料,可以是身份证或护照等证件)
  • 3. 是哪家企业?(营业执照,单位登记证明等证件)
  • 4. 您与该企业的关系是?(您是企业法人或被授权人,需提供企业委托授权书)
我们认为知名企业应该坦然接受公众讨论,对于答案中不准确的部分,我们欢迎您以正式或非正式身份在根叔知了上进行澄清。

抄袭了我的内容

×

原文链接或出处

诽谤我

×

您好,当您发现根叔知了上有诽谤您的内容时,您可以向根叔知了进行举报。 请您把以下内容通过邮件发送到pub.zhiliao@h3c.com 邮箱,我们会尽快处理。
  • 1. 您举报的内容以及侵犯了您什么权益?(请在邮件中列出您举报的内容、链接地址,并给出简短的说明)
  • 2. 您是谁?(身份证明材料,可以是身份证或护照等证件)
我们认为知名企业应该坦然接受公众讨论,对于答案中不准确的部分,我们欢迎您以正式或非正式身份在根叔知了上进行澄清。

对根叔社区有害的内容

×

垃圾广告信息
色情、暴力、血腥等违反法律法规的内容
政治敏感
不规范转载 >
辱骂、歧视、挑衅等(不友善)
骚扰我
诱导投票

不规范转载

×

举报说明