解决本网段策略路由acl过滤问题

此配置适用于H3C交换机
启用两个ACL 把需要过滤掉的路由加上

acl number 3002 name neiwanghutong-1
rule 10 permit ip source 10.3.0.0 0.0.255.255 destination 10.0.0.0 0.255.255.255
rule 20 permit ip source 10.3.0.0 0.0.255.255 destination 192.168.0.0 0.0.255.255
#
acl number 3003 name neiwanghutong-2
rule 10 permit ip source 10.3.0.0 0.0.255.255

写两个policy route

policy-based-route wifi-office permit node 10
if-match acl name neiwanghutong-1

policy-based-route wifi-office permit node 20
if-match acl name neiwanghutong-2
apply next-hop 10.253.253.25
#
应用到相应接口
interface Vlan-interface10
ip address 10.3.0.1 255.255.252.0
ip policy-based-route wifi-office

猜你喜欢

转载自blog.51cto.com/zhanguo1110/2411470