第一种就是用实打实的配置去设置,配置比较复杂
 比如华为防火墙流量统计:
 acl 3000
 rule permit ip source 192.168.0.1 0.0.0.0 dest 10.0.0.1 0.0.0.0
diagnose
 firewall statistic acl 3000 enable
dis firewall statistics acl //流量查看
另一种最简单,路由交换都通用:
 
AR2上的关键配置:
acl number 3000
 rule 5 permit ip source 3.3.3.3 0 destination 2.2.2.2 0
interface GigabitEthernet0/0/0
 ip address 10.0.12.2 255.255.255.0
 traffic-filter inbound acl 3000
用ar3的3.3.3.3 ping 2.2.2.2后,dis acl 3000查看收到几个包(这样和流统一样的效果):
 



















