HPE GreenLake Administration
- Community Home
- >
- Networking
- >
- Switching and Routing
- >
- Comware Based
- >
- 5500 ACL Strange Problem
Comware Based
1829913
Members
3030
Online
109993
Solutions
Forums
Categories
Company
Local Language
back
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
back
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Blogs
Information
Community
Resources
Community Language
Language
Forums
Blogs
Topic Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-15-2009 04:04 AM
09-15-2009 04:04 AM
5500 ACL Strange Problem
Hello
On a stackable 5500G (2x), I'm trying to apply a Vlan ACL with many rules, but I have found the following problem:
- Not all rules are applied on the ports!
> Applying Acl 3002 rule 22 failed! Reason: Resource unavailable!(GigabitEthernet1/0/19)
When I check the "display drv-module qacl qacl_resource" I don't see spare-rule problems
The same config on a similar switch (same software but just 1 module) don't show problem.
>>>>Config commands:
packet-filter vlan 2 inbound ip-group 3002
acl number 3002
description ACL_Vlan2
acl number 3002 match-order config
rule 1 permit ip source 172.16.16.0 0.0.7.255 destination any
rule 11 deny ip source 172.16.16.0 0.0.1.255 destination 172.16.16.0 0.7.255.255
rule 12 permit ip source 172.16.16.0 0.0.1.255 destination 172.16.50.131 0
rule 21 deny ip source 172.16.13.0 0.0.0.255 destination any
rule 22 permit ip source 172.16.13.0 0.0.0.255 destination 172.16.1.19 0
rule 901 permit ip source 172.16.16.0 0.0.7.255 destination 172.16.50.134 0
interface GigabitEthernet1/0/19
stp loop-protection
stp compliance legacy
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 to 3 6 201 211 251 299
port trunk pvid vlan 299
broadcast-suppression pps 3000
undo jumboframe enable
packet-filter inbound ip-group 3002 rule 1
packet-filter inbound ip-group 3002 rule 11
packet-filter inbound ip-group 3002 rule 12
description trunk
apply qos-profile default
#
Did someone encurred into the same problem?
It's a stack problem?
best regards
Andrea
This message was edited by acalligher on 9-15-09 @ 4:05 AM
On a stackable 5500G (2x), I'm trying to apply a Vlan ACL with many rules, but I have found the following problem:
- Not all rules are applied on the ports!
> Applying Acl 3002 rule 22 failed! Reason: Resource unavailable!(GigabitEthernet1/0/19)
When I check the "display drv-module qacl qacl_resource" I don't see spare-rule problems
The same config on a similar switch (same software but just 1 module) don't show problem.
>>>>Config commands:
packet-filter vlan 2 inbound ip-group 3002
acl number 3002
description ACL_Vlan2
acl number 3002 match-order config
rule 1 permit ip source 172.16.16.0 0.0.7.255 destination any
rule 11 deny ip source 172.16.16.0 0.0.1.255 destination 172.16.16.0 0.7.255.255
rule 12 permit ip source 172.16.16.0 0.0.1.255 destination 172.16.50.131 0
rule 21 deny ip source 172.16.13.0 0.0.0.255 destination any
rule 22 permit ip source 172.16.13.0 0.0.0.255 destination 172.16.1.19 0
rule 901 permit ip source 172.16.16.0 0.0.7.255 destination 172.16.50.134 0
interface GigabitEthernet1/0/19
stp loop-protection
stp compliance legacy
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 to 3 6 201 211 251 299
port trunk pvid vlan 299
broadcast-suppression pps 3000
undo jumboframe enable
packet-filter inbound ip-group 3002 rule 1
packet-filter inbound ip-group 3002 rule 11
packet-filter inbound ip-group 3002 rule 12
description trunk
apply qos-profile default
#
Did someone encurred into the same problem?
It's a stack problem?
best regards
Andrea
This message was edited by acalligher on 9-15-09 @ 4:05 AM
1 REPLY 1
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-06-2011 02:06 PM
12-06-2011 02:06 PM
Re: 5500 ACL Strange Problem
I´m having the same problem. : (
The opinions expressed above are the personal opinions of the authors, not of Hewlett Packard Enterprise. By using this site, you accept the Terms of Use and Rules of Participation.
Company
Events and news
Customer resources
© Copyright 2025 Hewlett Packard Enterprise Development LP