[S7706]华为ACL
VLAN ACL
# 创建访问控制裂变
acl number 3120
# 允许10.3.20.0/24段访问服务器10.1.40.12
rule 10 permit ip source 10.3.20.0 0.0.0.255 destination 10.1.40.12 0
# 允许10.3.20.0/24段访问192.168.101.0/24网段
rule 30 permit ip source 10.3.20.0 0.0.0.255 destination 192.168.101.0 0.0.0.255
# 拒绝所有访问
rule 100 deny ip
# 相应的VLAN 120 启用 ACL 3120
traffic-filter vlan 120 inbound acl 3120