Epm Access Control - Cisco Catalyst 4500 Series Command Reference Manual

Cisco ios command reference
Hide thumbs Also See for Catalyst 4500 Series:
Table of Contents

Advertisement

epm access control

epm access control
To configure access control, use the epm access control [open | default] command.
Syntax Description
open
default
Defaults
If the epm access control command is not configured, the behavior defaults to the epm access control
default command. Nothing is nvgened.
Command Modes
Configuration mode
Command History
Release
12.2(54)SG
Usage Guidelines
When you enter the epm access control command, it is nvgen'd.
If no ACLs are downloaded from the ACS server when a host is authenticated, the host is restricted by
the port ACLs and do not receive additional permissions. In such a scenario, if you enter the epm access
control open command, a permit ip host any entry is created for the host after authentication. This entry
is created only if no ACLs are downloaded from the ACS.
The epm access control open command is particularly useful in authentication open mode. Traffic from
a host is allowed to pass even before the host is authenticated. This traffic is restricted by the port ACL.
In such a scenario, if no ACLs are downloaded from the ACS, the host will not receive any additional
permissions. Even after authentication, the host is still restricted by the port ACL. If epm access control
open is configured, complete access is granted upon authentication.
If epm access control default is configured and no ACL is downloaded, port ACL is the only ACL on
the port. This is how access control functioned prior to Cisco IOS Release 12.2(54)SG.
Examples
The following example shows how to enable open access control:
Switch(config)# epm access control open
The following example shows how to enable default access control:
Switch(config)# epm access control default
Related Commands
Command
show ipv6 snooping counters
Catalyst 4500 Series Switch Cisco IOS Command Reference—Release IOS XE 3.3.0SG and IOS 15.1(1)SG)
2-236
epm access control [open | default]
Specifies open access control.
Specifies default access control.
Modification
This command was introduced on the Catalyst 4500 series switch.
Chapter 2
Cisco IOS Commands for the Catalyst 4500 Series Switches
Description
Displays the number of packets dropped per port due to RA
Guard.
OL-25342 -01

Advertisement

Table of Contents
loading

Table of Contents