HP 6125XLG R2306-HP 6125XLG Blade Switch Layer 3 - IP Routing Command Referenc - Page 263
To deny/permit a route with the specified destination and mask, use
View all HP 6125XLG manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 263 highlights
Views BGP IPv4 unicast instance view, BGP-VPN IPv4 unicast instance view, BGP IPv6 unicast instance view, BGP-VPN IPv6 unicast instance view Predefined user roles network-admin Parameters acl-number: Specifies an ACL by its number in the range of 2000 to 3999 to match routes by destination. acl6-number: Specifies an ACL6 by its number in the range of 2000 to 3999 to match routes by destination. prefix-list prefix-list-name: Specifies an IPv4 prefix list by its name, a case-sensitive string of 1 to 63 characters, to match routes by destination. prefix-list ipv6-prefix-name: Specifies an IPv6 prefix list by its name, a case-sensitive string of 1 to 63 characters, to match routes by destination. Usage guidelines If you use a basic ACL (with a number from 2000 to 2999) configured with the rule [ rule-id ] { deny | permit } source source-address source-wildcard command, the command matches routes whose destination network addresses match the source-address source-wildcard argument without matching the masks of the destination addresses. To use an advanced ACL (with a number from 3000 to 3999) in the command, configure the ACL using one of the following steps: • To deny/permit a route with the specified destination, use the rule [ rule-id ] { deny | permit } ip source sour-addr sour-wildcard command. • To deny/permit a route with the specified destination and mask, use the rule [ rule-id ] { deny | permit } ip source sour-addr sour-wildcard destination dest-addr dest-wildcard command. The source keyword specifies the destination address of a route and the destination keyword specifies the subnet mask of the destination. The subnet mask must be contiguous. Otherwise, the configuration does not take effect. Examples # In BGP IPv4 unicast instance view, use ACL 2000 to filter inbound BGP routes. system-view [Sysname] bgp 100 [Sysname-bgp] ipv4-family unicast [Sysname-bgp-ipv4] filter-policy 2000 import # In BGP-VPN IPv6 unicast instance view, use ACL6 2000 to filter inbound BGP routes. system-view [Sysname] bgp 100 [Sysname-bgp] ip vpn-instance vpn1 [Sysname-bgp-vpn1] ipv6-family unicast [Sysname-bgp-ipv6-vpn1] filter-policy 2000 import # Configure ACL6 3000 to permit only route 113.0.0.0/16 to pass, and use ACL 3000 to filter inbound routes. system-view [Sysname] acl number 3000 252