2.
Run:
traffic-redirect
[
vlan
vlan-id
]
inbound
acl
{ [
ipv6
] {
bas-acl
|
adv-
acl
|
name
acl-name
} |
l2-acl
|
user-acl
} [
rule
rule-id
] {
cpu
|
interface
interface-type
interface-number
|
ip-nexthop
ip-nexthop
|
ipv6-
nexthop
ipv6-nexthop
}
The packets matching an ACL rule are redirected.
NOTE
If the value of
vlan
vlan-id
is specified, it indicates that VLAN-based traffic redirection is
configured and the traffic matching an ACL rule is redirected on all interfaces on the VLAN.
If the value of
vlan
vlan-id
is not specified, the statistics on the traffic matching an ACL rule
are collected on all interfaces of the device.
When the
traffic-redirect
command and the
traffic-filter (interface view)
or
traffic-filter
(system view)
command are used simultaneously, and the same ACL rule is associated:
l
If the deny action is configured in the ACL rule, the
traffic-redirect
command does not
take effect.
l
If the permit action is configured in the ACL rule, the
traffic-redirect
command takes
effect.
A Layer 2 ACL and a Layer 3 ACL can be set in the
traffic-redirect
command simultaneously.
The Layer 3 ACL and its rules can be configured only after the Layer 2 ACL and its rules are
configured. The Layer 2 ACL number ranges from 4000 to 4999 and the Layer 3 ACL number
ranges from 2000 to 2999 or 3000 to 3999.
To configure both Layer 2 ACLs and Layer 3 ACLs on an interface of a switch, use the
following command:
traffic-redirect
[
vlan
vlan-id
]
inbound
acl
{
l2-acl
|
name
acl-name
} [
rule
rule-id
]
acl
{
bas-acl
|
adv-acl
|
name
acl-name
} [
rule
rule-id
] {
cpu
|
interface
interface-type
interface-
number
|
ip-nexthop
ip-nexthop
|
ipv6-nexthop
ipv6-nexthop
}
l
Configuring traffic redirection on an interface
1.
Run:
system-view
The system view is displayed.
2.
Run:
interface
interface-type
interface-number
The interface view is displayed.
3.
Run:
traffic-redirect
inbound
acl
{ [
ipv6
] {
bas-acl
|
adv-acl
|
name
acl-
name
} |
l2-acl
|
user-acl
} [
rule
rule-id
] {
cpu
|
interface
interface-
type
interface-number
|
ip-nexthop
ip-nexthop
|
ipv6-nexthop
ipv6-
nexthop
}
The packets matching an ACL rule are redirected.
NOTE
A Layer 2 ACL and a Layer 3 ACL can be set in the
traffic-redirect
command simultaneously.
The Layer 3 ACL and its rules can be configured only after the Layer 2 ACL and its rules are
configured. The Layer 2 ACL number ranges from 4000 to 4999 and the Layer 3 ACL number
ranges from 2000 to 2999 or 3000 to 3999.
To configure both Layer 2 ACLs and Layer 3 ACLs on an inbound interface of a switch, use
the following command:
traffic-redirect
inbound
acl
{
l2-acl
|
name
acl-name
} [
rule
rule-id
]
acl
{
bas-acl
|
adv-
acl
|
name
acl-name
} [
rule
rule-id
] {
cpu
|
interface
interface-type
interface-number
|
ip-
nexthop
ip-nexthop
|
ipv6-nexthop
ipv6-nexthop
}
----End
S3700HI Ethernet Switches
Configuration Guide - QoS
1 Class-based QoS Configuration
Issue 01 (2012-03-15)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
37