accounting, pre-requisites for ACL accounting 141
adding a comment to an entry 124
adding a comment to an IPv6 entry 165
applying an IPv4 ACL to a subset of ports (Layer
3) 132
applying an IPv4 ACL to VLAN members (Layer 2)
131
applying egress to CPU traffic 122
applying IPv6 to a trunk group 165
applying to a virtual interface in a VLAN 125
comment text management 123
configuration example 109
configuration example for extended named 118
configuration examples for extended 112
configuration notes for filtering 130
configuration tasks for logging 127
configuring for ARP filtering 133
configuring IPv6 156
configuring standard ACLs 107
configuring the route map 147
creating IPv6 158
default and implicit IPv6 action 157
deleting a comment from an entry 124
deleting a comment from an IPv6 entry 166
deny | permit 159
displaying ACL information 143
displaying filters for ARP 134
displaying IPv6 168
displaying log entries 128
DSCP matching 140
enabling and viewing hardware usage statistics
142
enabling filtering based on VE port membership
130
enabling filtering based on VLAN membership 130
enabling IPv6 on an interface 164
enabling strict control of fragmented packet
filtering 128
enabling support for switched traffic 129
example logging configuration 127
extended named configuration 118
extended number configuration 112
filtering ARP packets 132
filtering on IP precedence and ToS values 134
hardware-based configuration considerations 106
how hardware-based ACLs work 106
IDs and entries 104
IPv6 configuration notes 155
IPv6 overview 153
ipv6 traffic-filter incommand
ipv6 traffic-filter 165
IPv6 traffic filtering criteria 154
logging 126
numbering and naming 105
overview 103
policy-based routing (PBR) 144
preserving user input for TCP/UDP port numbers
122
QoS options 135
remark 123
standard named configuration 109
statistics 140
supported features on inbound traffic 101
supported features on outbound traffic 101
support for IPv6 logging 166
TCP flags and edge port security 135
troubleshooting 144
types 104
using to change the forwarding queue 139
using to control multicast features 142
using to map the DSCP value 136
viewing comments 124
ACL-based rate limiting 140
ACL Log
acl-logging 127
logging-enablecommand
logging-enable 127
ARP
clearing the filter count 134
configuring an inspection entry 334
authentication
entering privileged EXEC mode 52
authorization
configuring command authorization 55
C
command
aaa accounting dot1x 200
aaa accounting exec default start-stop radius |
tacacs+ | none 56
aaa authentication dot1x default 181
aaa authentication enable 50
aaa authentication enable | login default 67
aaa authentication enable implicit-user 52
aaa authentication login privilege-mode 52
aaa authentication snmp-server | web-server | enable |
login defaultsecurity
FastIron Ethernet Switch Security Configuration Guide 387
53-1003088-03
Comentarios a estos manuales