Or, run:
acl name
acl-name
user
A named ACL is created and ACL view is displayed.
NOTE
The
l2-defined-acl-number
parameter specifies the number of a user-defined ACL. The value
is an integer that ranges from 4000 to 4999.
3.
(Optional) Run:
step
step-value
The step value between ACL rule IDs is set.
4.
Run:
rule
[
rule-id
] {
permit
|
deny
} [ {
ether-ii
|
802.3
|
snap
} |
l2-
protocol
type-value
[
type-mask
] |
destination-mac
dest-mac-address
[
dest-mac-mask
] |
source-mac
source-mac-address
[
source-mac-mask
] |
vlan-id
vlan-id
[
vlan-id-mask
] |
8021p
802.1p-value
|
cvlan-id
cvlan-id
[
cvlan-id-mask
] |
cvlan-8021p
802.1p-value
|
double-tag
]
*
[
time-
range
time-range-name
]
A Layer 2 ACL rule is created.
5.
Run:
quit
Return to the system view.
6.
Run:
traffic classifier
classifier-name
[
operator
{
and
|
or
} ]
A traffic classifier is created and the traffic classifier view is displayed.
The
and
parameter indicates that the relationship between rules in a traffic classifier
is AND. That is, packets match a traffic classifier only when the packets match all
non-ACL rules and an ACL rule in the traffic classifier. The
or
parameter indicates
that the relationship between rules in a traffic classifier is OR. That is, packets match
a traffic classifier when the packets match a rule in the traffic classifier.
By default, the relationship between rules in a traffic classifier is AND.
7.
Run:
if-match acl
l2-acl-number
A traffic classifier based on a Layer 2 ACL is created.
l
Creating a traffic classifier based on a user-defined ACL
1.
Run:
system-view
The system view is displayed.
2.
Run:
acl
[
number
]
user-defined-acl-number
A user-defined ACL is created and the user-defined ACL view is displayed.
NOTE
user-defined-acl-number
specified the number of a user-defined ACL. The value is an integer
that ranges from 5000 to 5999.
S3700HI Ethernet Switches
Configuration Guide - QoS
1 Class-based QoS Configuration
Issue 01 (2012-03-15)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
17