您好,请知:
可通过acl去进行限定。举例如下:
假设192.168.1.0/24与192.168.2.0/24不能互访。
acl number 3000
rule 0 deny ip source 192.168.1.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
quit
acl number 3001
rule 0 deny ip source 192.168.2.0 0.0.0.255 destination 192.168.1.0 0.0.0.255
quit
int vlan 10
ip address 192.168.1.1 24
packet-filter 3000 inbound
quit
int vlan 20
ip address 192.168.2.1 24
packet-filter 3001 inbound
quit
暂无评论