acl number 3000
rule10 deny ip source 192.168.1.0 0.0.0.255 destination 192.168.4.0 0.0.0.255 //配置1.0段vlan与4.0不能互访
#
return
[Huawei-acl-adv-3000]q //退出ACL视图
[Huawei]int g0/0/1 //进入对应的接口
[Huawei-GigabitEthernet0/0/1]traffic-filterinbound acl 3000 //接口下调用ACL 3000
[Huawei-GigabitEthernet0/0/1]q //退出接口视图