97¹ú¼Ê

Àë±ðÔËάÄÚÚ§ È«ÓòЭͬÌáЧ Ø­ 97¹ú¼ÊÍøÂçÔËά°ü¹ÜÂÄÀú·ÖÏí»á
Ô¤Ô¼Ö±²¥
ÎÞ¸Ð×¼Èë ÈËÎïͳ¹Ü Ø­ RG-SAM+5.X ÐÂÒ»´ú¸ßУAIÈÏ֤ƽ̨Ðû²¼
Ô¤Ô¼Ö±²¥
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
²úÆ·
< ·µ»ØÖ÷²Ëµ¥
²úÆ·ÖÐÐÄ
²úÆ·
½â¾ö¼Æ»®
< ·µ»ØÖ÷²Ëµ¥
½â¾ö¼Æ»®ÖÐÐÄ
ÐÐÒµ
ºÏ×÷»ï°é
·µ»ØÖ÷²Ëµ¥
Ñ¡ÔñÇøÓò/ÓïÑÔ
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾ 97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

ACL»ù±¾¿´·¨¼°Ô­ÀíÏÈÈÝ

ACLͨ¹ý½ç˵һϵÁеÄACL¹æÔò £¬²¢Ó¦ÓÃÔÚ×°±¸ÖÐ £¬ÒÔʵÏÖÍøÂç´«ÊäÖеÄ×°±¸µÄÊý¾Ý±¨ÎĹýÂ˺ÍÊý¾Ý±¨ÎÄ·ÖÀàµÄ¹¦Ð§ £¬Äܹ»±ÜÃâÍøÂçÖеı¨ÎĹ¥»÷ºÍ¿ØÖÆÍøÂç»á¼û £¬ÊµÏÖÁËÍøÂç¶ÔÇå¾²¡¢¿É¿¿ºÍÎȹ̵İü¹ÜÒªÇó¡£

  • 97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

    Ðû²¼Ê±¼ä£º2022-11-24

  • 97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

    µã»÷Á¿£º

  • 97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

    µãÔÞ£º

·ÖÏíÖÁ

97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

ÎÒÏë̸ÂÛ

1 ACL¸ÅÊö
1.1   ACLÊÇʲô
ÔÚÏÈÈÝACL×÷ÓÃ֮ǰ £¬ÏÈÀ´¿´¿´Ê²Ã´ÊÇACL¡£ACL£¨Access Control List £¬»á¼û¿ØÖÆÁÐ±í£©Ò²³ÆÎª»á¼ûÁÐ±í £¬»òÕß°ü¹ýÂË¡£ACL°üÀ¨ÁËһϵÁÐÌõ¼þÓï¾ä £¬ÏÖʵÉÏÊÇһϵÁаüÀ¨“ÔÊÐí”»òÕß“¾Ü¾ø”µÄ¹æÔò¡ £»»¾ä»°Ëµ £¬ACLÊÇÈËΪ½ç˵µÄһϵÁйæÔò £¬ÒÔ±ã×°±¸ÅжÏÊÇ·ñÖ´ÐÐÓû§»®¶¨Ðж¯¡£
1.2   ACL×÷ÓÃ
ACL·ºÆðµÄ³õʼĿµÄÊÇÓÃÓÚÊý¾Ý±¨ÎĹýÂ˺ÍÊý¾Ý±¨ÎÄ·ÖÀà¡£ÏÂÃæÁÙACL×÷ÓÃ×ö¼òÒªÏÈÈÝ¡£
¡ñÊý¾Ý±¨ÎĹýÂË
ÓÉÓÚACL°üÀ¨ÁË“ÔÊÐí”»ò“¾Ü¾ø”µÄACL¹æÔò £¬Í¨¹ýACL¹æÔò £¬Äܹ»¿ØÖÆ×°±¸ÊÇ·ñת·¢Êý¾Ý±¨ÎÄ £¬»òÕßÏÞÖÆÓû§»á¼û·þÎñ¡£
¡ñÊý¾Ý±¨ÎÄ·ÖÀà
ͨ¹ýACL¹æÔò¶ÔÊý¾Ý±¨ÎľÙÐзÖÀà £¬ÆäËûÓ¦Ó㨺ñÈQoS¡¢Õ½ÂÔ·Óɵȣ©Í¨¹ýŲÓÃACL £¬Äܹ»¶Ô²î±ðÀà±ðµÄÊý¾Ý±¨ÎľÙÐÐÇø±ð´¦Öóͷ£¡£
                                                                              
2 ACLÊÂÇéÔ­Àí
2.1   ACLµÄ»ù±¾¿´·¨ÏÈÈÝ
¡ñACE
ACE£¨Access Control Entry £¬»á¼û¿ØÖÆÌõÄ¿£©ÊǰüÀ¨“ÔÊÐí£¨Permit£©”»ò“¾Ü¾ø£¨Deny£©”Á½ÖÖÐж¯ £¬ÒÔ¼°¹ýÂ˹æÔòµÄÒ»ÌõÓï¾ä¡£Ã¿¸öACE¶¼ÓÐÒ»¸öÐòºÅ £¬¸ÃÐòºÅ¿ÉÓÉ×°±¸×Ô¶¯·ÖÅÉ»òÕßÊÖ¶¯ÉèÖá£Ò»ÌõACLÖаüÀ¨Ò»¸ö»òÕß¶à¸öACE¡£ACLͨ¹ýACE¶ÔÊý¾Ý±¨ÎľÙÐйýÂ˺ͷÖÀà¡£
¡ñ²½³¤
µ±×°±¸ÎªACE×Ô¶¯·ÖÅÉÐòºÅʱ £¬Á½¸öÏàÁÚACEÐòºÅÖ®¼äµÄ²îÖµ £¬³ÆÎª²½³¤¡£ÀýÈç £¬ÈôÊǽ«ACEµÄ²½³¤É趨Ϊ20 £¬Ôò×°±¸Æ¾Ö¤0¡¢20¡¢40¡¢60…ÕâÑùµÄµÝÔö˳Ðò×Ô¶¯ÎªACE·ÖÅÉÐòºÅ¡£ÈçÏÂËùʾ¡£
0 deny ip any any
20 permit tcp 192.168.12.0 0.0.0.255 eq telnet any
µ±²½³¤¸Ä±äºó £¬ACEÐòºÅ»á×Ô¶¯°´Ð²½³¤ÖµÖØÐ·ÖÅÉ¡£ÀýÈç £¬µ±°Ñ²½³¤¸ÄΪ10ºó £¬Ô­À´ACEÐòºÅ´Ó0¡¢20¡¢40Äð³É0¡¢20¡¢30¡£
ͨ¹ý¸Ä±ä²½³¤¿ÉÒÔÔÚÁ½¸öACEÖ®¼ä²åÈëеÄACE¡£ÀýÈ罨ÉèÁË4¸öACE £¬²¢Í¨¹ýÊÖ¶¯ÉèÖÃACEÐòºÅ»®·ÖΪ1¡¢2¡¢3ºÍ4¡£ÈôÊÇÏ£ÍûÄÜÔÚÐòºÅ1ºóÃæ²åÈëÒ»ÌõеÄACE £¬Ôò¿ÉÒÔÏȽ«²½³¤ÐÞ¸ÄΪ2 £¬´ËʱԭÏÈ4¸öACEµÄÐòºÅ×Ô¶¯±äΪ1¡¢3¡¢5ºÍ7 £¬ÔÙ²åÈëÒ»ÌõÊÖ¶¯ÉèÖõÄÐòºÅΪ2µÄACE¡£
¡ñ¹ýÂËÓòºÍ¹ýÂËÓòÄ£°å
¹ýÂËÓòÖ¸µÄÊÇÌìÉúÒ»ÌõACEʱ £¬Æ¾Ö¤±¨ÎÄÖеÄÄÄЩ×ֶζԱ¨ÎľÙÐÐʶ±ð¡¢·ÖÀà¡£¹ýÂËÓòÄ£°å¾ÍÊÇÕâЩ×ֶεÄ×éºÏ¡£
¡ñACL¹æÔò
ACL¹æÔò£¨Rules£©Ö¸µÄÊÇACE¹ýÂËÓòÄ£°å¶ÔÓ¦µÄÖµ¡£ÀýÈç £¬Ò»ÌõACEµÄÄÚÈÝÈçÏ£º
10 permit tcp host 192.168.12.2 any eq telnet
ÔÚÕâÌõACEÖÐ £¬¹ýÂËÓòÄ£°åΪÒÔÏÂ×ֶεÄÜöÝÍ£ºÔ´IPµØÖ·×ֶΡ¢Ä¿µÄIPµØÖ·×ֶΡ¢IPЭÒé×ֶΡ¢TCPÄ¿µÄ¶Ë¿Ú×ֶΡ£¶ÔÓ¦µÄÖµ£¨¼´¹æÔò£©»®·ÖΪ£ºÔ´IPµØÖ·ÎªHost 192.168.12.2¡¢Ä¿µÄIPµØÖ·ÎªAny£¨¼´ËùÓÐÖ÷»ú£©¡¢IPЭÒéΪTCP¡¢TCPÄ¿µÄ¶Ë¿ÚΪTelnet¡£Èçͼ2-1Ëùʾ¡£
¡ñÐÐΪ
ÐÐΪ£¨Action£©Ö¸µÄÊÇACEÖÐÖ¸¶¨µÄÐж¯ £¬°üÀ¨“ÔÊÐí£¨Permit£©”»ò“¾Ü¾ø£¨Deny£©”Á½ÖÖ¡£PermitΪÔÊÐí¹æÔòÖÐÖ¸¶¨µÄÁ÷Á¿ £¬DenyΪ¾Ü¾ø¹æÔòÖÐÖ¸¶¨µÄÁ÷Á¿¡£
ͼ2-1 ¶ÔACE£ºpermit tcp host 192.168.12.2 any eq telnetµÄÆÊÎö
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
                                                                                
2.2   ACLÊÂÇéÔ­ÀíÏÈÈÝ
ACLÓÉһϵÁеÄACE×é³É¡£Ã¿¸öACE¶¼½ç˵ÁËACL¹æÔò¼°ÐÐΪ¡£ÔÚËùÓеÄACEÖ®ºó £¬±£´æÒ»ÌõĬÈϾܾøËùÓб¨ÎĵÄACE£ºdeny any any£¨²»ÏÔʾ£©¡£
ACE¿ÉÒÔÕë¶ÔÊý¾Ý±¨ÎĵÄÔ´µØÖ·¡¢Ä¿µÄµØÖ·¡¢ÉϲãЭÒé £¬Ê±¼äÇøÓòµÈÐÅÏ¢¾ÙÐйýÂË¡£
ACEÔÚACLÖеÄ˳Ðò¾öÒéÁ˸ÃACEÔÚACLÖеı¨ÎÄÆ¥ÅäÓÅÏȼ¶¡£µ±Êý¾Ý±¨ÎĽøÈë×°±¸»òÕßÒª´Ó×°±¸ÖÐת·¢Ê± £¬°´ACEµÄÐòºÅ´ÓСµ½´ó¾ÙÐйæÔòÆ¥Åä £¬µ±ÕÒµ½Æ¥ÅäµÄACEºó×èÖ¹¼ì²éºóÐøµÄACE¡£ÈôÊÇÉèÖõÄACE¶¼Î´Æ¥Åäµ½ £¬ÔòÆ¥Åä×îºóÒ»ÌõĬÈϾܾøËùÓб¨ÎĵÄACE¡£Èçͼ2-2Ëùʾ¡£
½¨ÉèACL²¢½«ACLÓ¦ÓÃÔÚ½Ó¿ÚµÄÈëÆ«Ïò»òÕß³öÆ«Ïòºó £¬ACL¹¦Ð§²ÅÉúЧ¡£µ±±¨ÎÄÊÕÖ§×°±¸Ê± £¬×°±¸Í¨¹ýÅжϱ¨ÎÄÊÇ·ñÆ¥ÅäACL¹æÔò £¬¾öÒéÊÇ·ñת·¢»ò×è¶Ï±¨ÎÄ¡£ACL²Å»ª¹»Ê©Õ¹¿ØÖÆ»á¼ûµÄ×÷Óá£
ͼ2-2 ACLÊÂÇéÔ­Àíͼ
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
                                                                                    
3 ¿¢ÊÂÓï
Ëæ×ÅÍøÂçÓ¦ÓõÄÍÆ¹ãºÍÍøÂçÊÖÒÕµÄÉú³¤ £¬ÍøÂçµÄ°ü¹ÜÒªÔ½À´Ô½¸ß¡£ACLµÄÊý¾Ý±¨ÎĹýÂ˺ÍÊý¾Ý±¨ÎÄ·ÖÀàµÄ¹¦Ð§ £¬Äܹ»±ÜÃâÍøÂçÖеı¨ÎĹ¥»÷ºÍ¿ØÖÆÍøÂç»á¼û £¬ÊµÏÖÁËÍøÂç¶ÔÇå¾²¡¢¿É¿¿ºÍÎȹ̵İü¹ÜÒªÇó¡£ÄÇô £¬ACL·ÖÀàÓÐÄÄЩ£¿¸ß¼¶ACLºÍ»ù±¾ACLµÄÇø±ð¡¢±ê×¼ACLºÍÀ©Õ¹ACLµÄÇø±ð»®·ÖÊÇʲô£¿ACLÉèÖÃÔõÑùʵÏÖÄØ£¿¾´ÇëÆÚ´ýºóÐøÏÈÈÝ¡£
                                                                          

Ïà¹Ø±êÇ©£º

97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾ 97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

µãÔÞ

¸ü¶àÊÖÒÕ²©ÎÄ

ÈκÎÐèÒª £¬ÇëÁªÏµ97¹ú¼Ê

97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

·µ»Ø¶¥²¿

ÊÕÆð
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾ ÎĵµAIÖúÊÖ
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾ ÎĵµÆÀ¼Û
¸Ã×ÊÁÏÊÇ·ñ½â¾öÁËÄúµÄÎÊÌ⣿
Äú¶ÔÄ¿½ñÒ³ÃæµÄÖª×ã¶ÈÔõÑù£¿
²»Õ¦µÎ
ºÜÊǺÃ
ÄúÖª×ãµÄÔµ¹ÊÔ­ÓÉÊÇ£¨¶àÑ¡£©£¿
Äú²»Öª×ãµÄÔµ¹ÊÔ­ÓÉÊÇ£¨¶àÑ¡£©£¿
ÄúÊÇ·ñÉÐÓÐÆäËûÎÊÌâ»ò½¨Ò飿
ΪÁË¿ìËÙ½â¾ö²¢»Ø¸´ÄúµÄÎÊÌâ £¬Äú¿ÉÒÔÁôÏÂÁªÏµ·½·¨
ÓÊÏä
ÊÖ»úºÅ
ллÄúµÄ·´À¡£¡
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
ÇëÑ¡Ôñ·þÎñÏîÄ¿
¹Ø±Õ×Éѯҳ
ÊÛǰ×Éѯ ÊÛǰ×Éѯ
ÊÛǰ×Éѯ
ÊÛºó·þÎñ ÊÛºó·þÎñ
ÊÛºó·þÎñ
Òâ¼û·´Ïì Òâ¼û·´Ïì
Òâ¼û·´Ïì
¸ü¶àÁªÏµ·½·¨
ÍøÕ¾µØÍ¼