问题描述:
做流量镜像时,需要镜像192.168.0.0/24的源流量,但排除掉特定的192.168.100-103的流量,这里acl 中rule 5 deny的会不会被traffic匹配上?
acl number 3008
rule 5 deny ip source 192.168.0.100 0.0.0.3
rule 100 permit ip source 192.168.0.0 0.0.0.255
traffic classifier c1 operator and
if-match acl 3008
traffic behavior b1
mirror-to interface Ten-GigabitEthernet1/3/0/45
qos policy qos1
classifier c1 behavior b1
interface Ten-GigabitEthernet1/2/0/37
qos apply policy qos1 inbound
组网及组网描述:
是的