一标准的ACL语句
全网互通
R1-ACL语句
#
FTP server enable
FTP acl 2001
#
aaa
local-user huawei password cipher asd123
local-user huawei privilege level 15
local-user huawei ftp-directory flash:
local-user huawei service-type ftp
#
time-range ftp-access 14:00 to 18:00 daily
time-range ftp-access from 00:00 2021/1/1 to 23:59 2021/12/31
#
acl number 2001
rule 5 permit source 192.168.10.0 0
rule 10 permit source 192.168.20.0 0 time-range ftp-access
rule 15 deny
#
LSW1:
interface Vlanif10
ip address 192.168.10.1 255.255.255.0
#
interface Vlanif20
ip address 192.168.20.1 255.255.255.0
#
interface Vlanif30
ip address 192.168.30.1 255.255.255.0
#
interface Vlanif40
ip address 11.0.0.1 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
port hybrid pvid vlan 10
port hybrid untagged vlan 10
#
interface GigabitEthernet0/0/2
port hybrid pvid vlan 20
port hybrid untagged vlan 20
#
interface GigabitEthernet0/0/3
port hybrid pvid vlan 30
port hybrid untagged vlan 30
#
interface GigabitEthernet0/0/4
port hybrid pvid vlan 40
port hybrid untagged vlan 40
#
验证
二扩展ACL语句