ingress-interface (PBR rule view)

Function

The ingress-interface command sets the incoming interface of packets as a matching condition of a PBR rule.

The undo source-address command deletes the configuration.

Format

ingress-interface interface-type interface-number

undo ingress-interface { interface-type interface-number | all }

Parameters

Parameter Description Value
interface-type interface-number

Specifies the incoming interface of packets.

-

all

Specifies all the interface.

-

Views

PBR rule view

Default Level

2: Configuration level

Usage Guidelines

Matching conditions are used to identify traffic, and traffic that matches conditions is routed independently from other traffic. When the incoming interface is set as a matching condition, the PBR rule is implemented on packets received by the specified incoming interface on the AntiDDoS. The incoming interface and source security zone are mutually exclusive in PBR. Do not set both as matching conditions.

Example

# Set incoming interface GigabitEthernet 1/0/1 as a matching condition of a PBR rule.

<sysname> system-view
[sysname] policy-based-route
[sysname-policy-pbr] rule name abc
[sysname-policy-pbr-rule-abc] ingress-interface GigabitEthernet 1/0/1

Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.