第一种就是用实打实的配置去设置,配置比较复杂
比如华为防火墙流量统计:
acl 3000
rule permit ip source 192.168.0.1 0.0.0.0 dest 10.0.0.1 0.0.0.0
diagnose
firewall statistic acl 3000 enable
dis firewall statistics acl //流量查看
另一种最简单,路由交换都通用:
AR2上的关键配置:
acl number 3000
rule 5 permit ip source 3.3.3.3 0 destination 2.2.2.2 0
interface GigabitEthernet0/0/0
ip address 10.0.12.2 255.255.255.0
traffic-filter inbound acl 3000
用ar3的3.3.3.3 ping 2.2.2.2后,dis acl 3000查看收到几个包(这样和流统一样的效果):