18 Chapter 2: Configuring the Application Control Forwarding Protocol (ACFP)Configure the ACFP client through a MIB browser to send information tothe Switch, where the client index is 1, three working modes aresupported; host, redirect, and mirror (achieved by setting nodeh3cAcfpClientMode), the client row status is 4 (achieved by setting nodeh3cAcfpClientRowStatus) and the other parameters adopt the defaultvalues.# Configure the ACFP policyConfigure the ACFP policy through the MIB browser to send informationto the Switch, where the policy index is 1.1, the policy inbound port isGigabitEthernet 1/0/1 (achieved by setting node h3cacfpPolicyInIfIndex),the policy destination port is GigabitEthernet 1/1/1 (achieved by settingnode h3cAcfpPolicyDestIfIndex), the policy row status is 4 (achieved bysetting node h3cAcfpPolicyRowStatus) and the other parameters adoptthe default values.# Configure ACFP rules.Configure an ACFP rule through a MIB browser to send information tothe Switch, where the rule index is 1.1.1, the action is mirror (achievedby setting node h3cAcfpRuleAction), matching all packets (achieved bysetting node h3cAcfpRuleAll), the rule row status is 4 (achieved by settingnode h3cAcfpRuleRowStatus) and the other parameters adopt thedefault values.c CAUTION: When the ACFP policy action is set to mirror, you need todisable the Spanning Tree Protocol (STP) on the destination portGigabitEthernet 1/1/1.Configure an ACFP rule through the MIB browser to send information tothe Switch, where the rule index is 1.1.2, the action is permit (achievedby setting node h3cAcfpRuleAction), the packets whose source IP addressis in network segment 192.168.1.0 (achieved by setting nodeh3cAcfpRuleSrcIP) and source IP wildcard-mask is 0.0.0.255 (achieved bysetting node h3cAcfpRuleSrcIPMask) are matched, the rule row status is 4(achieved by setting node h3cAcfpRuleRowStatus) and the otherparameters adopt the default values.Configure an ACFP rule through the MIB browser to send information tothe Switch, where the rule index is 1.1.3, the action is deny (achieved bysetting node h3cAcfpRuleAction), the packets whose source IP address is