管理员要求能确保Vlan10和Vlan20能互通,并且Vlan20的用户访问外网时,使用10.1.30.1作为出口,二Vlan10的用户访问外网时,使用10.1.20.1作为出口,因此考虑使用策略路由。具体配置如下:
[Switch] acl 3000
[Switch-acl-adv-3000] rule permit ip source 192.168.1.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
[Switch-acl-adv-3000] rule permit ip source 192.168.2.0 0.0.0.255 destination 192.168.1.0 0.0.0.255
Switch-acl-adv-3000] quit
?
[Switch] acl 3001?//匹配内网192.168.1.0/24网段的数据流
[Switch-acl-adv-3001]?(1)
[Switch-acl-adv-3001] quit
[Switch] acl 3002?//匹配内网192.168.2.0/24网段的数据流
[Switch-acl-adv-3002] rule permit ip source 192.168.2.0 0.0.0.255
[Switch-acl-adv-3002] quit
?
[Switch] traffic classifier c0 operator or
[Switch-classifier-c0]?(2)
[Switch-classifier-c0] quit
[Switch]?(3)
[Switch-classifier-c1] if-match acl 3001
[Switch-classifier-c1] quit
[Switch] traffic classifier c2 operator or
[Switch-classifier-c2] if-match acl 3002
[Switch-classifier-c2] quit
[Switch] traffic behavior b0
[Switch-behavior-b0]?(4)
[Switch-behavior-b0] quit
[Switch] traffic behavior b1
[Switch-behavior-b1]?(5)
[Switch-behavior-b1] quit
[Switch] traffic behavior b2
[Switch-behavior-b2] redirect ip-nexthop 10.1.30.1
[Switch-behavior-b2] quit
?[Switch](6)
[Switch-trafficpolicy-p1]?(7)
[Switch-trafficpolicy-p1] classifier c1 behavior b1
[Switch-trafficpolicy-p1] classifier c2 behavior b2
[Switch-trafficpolicy-p1] quit
[Switch] interface gigabitethernet 1/0/3
[Switch-GigabitEthernet1/0/3]?(8)
问题1:简要叙述ACL3000在此配置中的作用是什么?
问题2:请完成(1)-(8)空的命令填空