Add Basic Rule
Operation Procedure
- When adding a basic ACL resource or configuring a basic ACL template, click Add or Add Rule to configure basic rules.
- In the Basic Info area, select the action you want to take for matching packets, permit or deny.
- Set the time range you want to apply to this rule.
- Set the source address specifying where the pattern matching occurs in this rule.
- In the Other Settings area, perform the following configurations:
- Configure the Fragment option. If it is selected, the rule identifies all packets, including fragments and non-fragments. If it is not selected, the rule identifies non-first fragments.
- Define whether to enable logging.
- Configure the VPN instance to which you want to apply this rule.
- Click OK.
Parameters
- VPN Instance: Name of an MPLS L3VPN instance.
- Source Address: Source address and wildcards.
- Dynamic Parameter: Name of a user-defined parameter. Currently you can only use the dynamic parameter to define the source IP address in a basic ACL.
For more information, see Create and Use Dynamic Parameter File.
- Variable Address: Name of a user-defined parameter. When an ACL template is exported to an ACL rule set, the variable address value automatically changes. Currently you can only use the variable address to define the source IP address in a basic ACL.