最后一个成功实验的示例:
两个设备nat类型检测端口被封闭。
主路由acl命令
sys
acl advanced 3000
rule 0 deny udp destination-port eq 6672
rule 1 deny udp source-port eq 6672
rule 2 deny udp destination-port eq 61455
rule 3 deny udp source-port eq 61455
rule 4 deny udp destination-port eq 61456
rule 5 deny udp source-port eq 61456
exit
int vlan1
packet-filter 3000 inbound
packet-filter 3000 outbound
exit