ACL如下
现在问题是:源地址192.168.30.0/24 网段,无法访问192.168.200.254 业务 但是可以访问192.168.200.1 业务 192.168.200.0/24 网关是192.168.200.2
Advanced IPv4 ACL 3000, 2 rules,
ACL's step is 5, start ID is 0
rule 1 permit ip source 192.168.80.0 0.0.0.255 destination 192.168.21.0 0.0.0.255
rule 2 permit ip source 192.168.80.0 0.0.0.255 destination 192.168.31.0 0.0.0.255
Advanced IPv4 ACL 3011, 8 rules,
ACL's step is 5, start ID is 0
rule 0 permit ip source 192.168.11.0 0.0.0.255 destination 192.168.22.0 0.0.0.255
rule 5 permit ip source 192.168.11.0 0.0.0.255 destination 192.168.30.0 0.0.0.255
rule 6 permit ip source 192.168.11.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
rule 7 permit ip destination 192.168.200.0 0.0.0.255
rule 10 permit ip source 192.168.11.0 0.0.0.255 destination 192.168.31.0 0.0.0.255
rule 15 permit ip source 192.168.11.0 0.0.0.255 destination 192.168.32.0 0.0.0.255
rule 20 deny ip destination 192.168.0.0 0.0.255.255
rule 25 permit ip
Advanced IPv4 ACL 3020, 4 rules,
ACL's step is 5, start ID is 0
rule 5 permit ip source 192.168.20.0 0.0.0.255 destination 192.168.50.0 0.0.0.255
rule 6 permit ip source 192.168.20.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
rule 10 deny ip destination 192.168.0.0 0.0.255.255
rule 15 permit ip
Advanced IPv4 ACL 3021, 6 rules,
ACL's step is 5, start ID is 0
rule 5 permit ip source 192.168.21.0 0.0.0.255 destination 192.168.50.0 0.0.1.255
rule 6 permit ip source 192.168.21.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
rule 7 permit ip destination 192.168.200.0 0.0.0.255
rule 8 permit ip source 192.168.21.0 0.0.0.255 destination 192.168.31.0 0.0.0.255
rule 10 deny ip destination 192.168.0.0 0.0.255.255
rule 15 permit ip
Advanced IPv4 ACL 3022, 9 rules,
ACL's step is 5, start ID is 0
rule 0 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.50.0 0.0.1.255
rule 1 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.105.0 0.0.0.255
rule 5 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.80.0 0.0.0.255
rule 6 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
rule 7 permit ip destination 192.168.200.0 0.0.0.255
rule 8 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.100.0 0.0.0.255
rule 9 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.60.0 0.0.0.255
rule 10 deny ip destination 192.168.0.0 0.0.255.255
rule 15 permit ip
Advanced IPv4 ACL 3040, 4 rules,
ACL's step is 5, start ID is 0
rule 0 deny ip destination 192.168.2.0 0.0.0.255
rule 5 deny ip destination 192.168.50.0 0.0.1.255
rule 10 deny ip destination 192.168.200.0 0.0.0.255
rule 15 permit ip
Advanced IPv4 ACL 3050, 16 rules,
ACL's step is 5, start ID is 0
rule 0 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.100.0 0.0.0.255
rule 1 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.31.0 0.0.0.255
rule 2 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.32.0 0.0.0.255
rule 3 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.80.0 0.0.0.255
rule 4 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.30.0 0.0.0.255
rule 5 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.22.0 0.0.0.255
rule 6 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.2.0 0.0.0.255
rule 7 permit ip destination 192.168.200.0 0.0.0.255
rule 8 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.21.0 0.0.0.255
rule 9 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.20.0 0.0.0.255
rule 10 permit ip source 192.168.50.0 0.0.1.255 destination 192.168.7.0 0.0.0.255
rule 11 permit ip destination 192.168.110.0 0.0.0.255
rule 12 permit ip destination 192.168.100.0 0.0.0.255
rule 13 permit ip destination 192.168.130.0 0.0.0.255
rule 15 deny ip destination 192.168.0.0 0.0.255.255
rule 25 permit ip
Advanced IPv4 ACL 3060, 4 rules,
ACL's step is 5, start ID is 0
rule 0 permit ip destination 192.168.60.0 0.0.0.255
rule 5 deny ip destination 192.168.0.0 0.0.255.255
rule 7 permit ip destination 192.168.200.0 0.0.0.255
rule 10 permit ip
Advanced IPv4 ACL 3100, 13 rules,
ACL's step is 5, start ID is 0
rule 0 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.50.0 0.0.1.255
rule 1 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
rule 2 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.22.0 0.0.0.255
rule 5 permit tcp source 192.168.100.0 0.0.0.255 destination 192.168.80.0 0.0.0.255 established
rule 6 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.200.0 0.0.0.255
rule 7 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.21.0 0.0.0.255
rule 8 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.31.0 0.0.0.255
rule 10 permit icmp destination 192.168.50.0 0.0.0.255 icmp-type echo-reply
rule 11 permit ip source 192.168.100.0 0.0.0.255 destination 192.168.7.0 0.0.0.255
rule 15 permit icmp destination 192.168.80.0 0.0.0.255 icmp-type echo-reply
rule 20 permit ip destination 192.168.100.0 0.0.0.255
rule 25 deny ip destination 192.168.0.0 0.0.255.255
rule 30 permit ip
Advanced IPv4 ACL 3105, 5 rules,
ACL's step is 5, start ID is 0
rule 0 permit ip source 192.168.105.0 0.0.0.255 destination 192.168.22.0 0.0.0.255
rule 1 permit ip source 192.168.105.0 0.0.0.255 destination 192.168.200.0 0.0.0.255
rule 7 permit ip destination 192.168.200.0 0.0.0.255
rule 10 deny ip destination 192.168.0.0 0.0.255.255
rule 15 permit ip
Advanced IPv4 ACL 3999, 6 rules,
qi连接深信服防火墙-PBR
ACL's step is 5, start ID is 0
rule 0 deny ip destination 192.168.0.0 0.0.255.255
rule 5 permit ip source 192.168.40.0 0.0.1.255
rule 10 permit ip source 192.168.105.0 0.0.0.255
rule 15 permit ip source 192.168.30.0 0.0.0.255
rule 20 permit ip source 192.168.31.0 0.0.0.255
rule 25 permit ip source 192.168.109.0 0.0.0.255
(0)
交换机acl 里面没有单独针对192.168.200.254 192.168.200.1某一个地址过滤 看192.168.30.0/24 应该是匹配策略路由到防火墙 看下防火墙是否有相关拦截吧
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论