User's Manual

Table Of Contents
Configuration Guide of XGS-5240-Series
55-3
6. Clear statistic information of VLAN-ACL
Command
Explanation
Admin mode
clear vacl [in | out] statistic vlan [<vlan
-id>]
Clear the statistic information of VAC
L.
55.3 VLAN-ACL Configuration Example
A companys network configuration is as follows, all departments are divided by diff
erent VLANs, technique department is Vlan1, finance department is Vlan2. It is required
that technique department can access the outside network at timeout, but finance dep
artment are not allowed to access the outside network at any time for the security. The
n the following policies are configured:
Set the policy VACL_A for technique department. At timeout they can access the o
utside network, the rule as permit, but other times the rule as deny, and the policy
is applied to Vlan1.
Set the policy VACL_B of ACL for finance department. At any time they can not a
ccess the outside network, but can access the inside network with no limitation, an
d apply the policy to Vlan2.
Network environment is shown as below:
Fig 11-1 VLAN-ACL configuration example