No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

FAQ-Precautions for Applying a Traffic Policy to a Layer 2 Interface on an NE20E-X6

Publication Date:  2019-03-27 Views:  224 Downloads:  0

Issue Description

Device information: NE20E-X6 V600R008C10SPC300+V600R008SPC009

Issue Description: The traffic policy configured on the Layer 2 interface of an NE20E-X6 does not take effect. The associated configuration is as follows:

#
acl number 3000
 step 1
 rule 1 deny ip destination 10.219.147.100 0
 rule 2 deny ip destination 10.219.147.101 0
#
traffic classifier jndl1 operator or
 if-match acl 3000
#
traffic behavior jndl2
#
traffic policy jndl
 share-mode
 classifier jndl1 behavior jndl2
#

interface Vlanif11
 ip binding vpn-instance test
 ip address 10.219.147.254 255.255.255.0
#

#
interface GigabitEthernet3/0/2
 portswitch
 negotiation auto                         
 undo shutdown
 port link-type trunk
 port trunk allow-pass vlan 1 to 4094
 traffic-policy jndl outbound
#

Solution

  1. If a traffic policy is applied to a Layer 2 interface, only one traffic policy can be applied to a VLAN in one direction.

  2. If a traffic policy is applied to a Layer 2 interface and a VLAN ID is specified, the interface where the traffic policy is applied must be bound to the specified VLAN.

  3. After the following configurations are changed, the traffic policy can take effect:

#
interface GigabitEthernet3/0/2
portswitch
negotiation auto
 undo shutdown
port link-type trunk
port trunk allow-pass vlan 1 to 4094
traffic-policy jndl outbound vlan 11  //
Add vlan11 next to the traffic policy.
#

 

END