Cisco WS-C6506 Software Manual page 509

Catalyst 6500 series switch
Hide thumbs Also See for WS-C6506:
Table of Contents

Advertisement

Chapter 15
Configuring Access Control
Console> (enable)
The PBF client is now mapped to the PBF gateway as follows:
Console> (enable) show pbf client
Name
Map
VLAN
Clients
Adjacency
-------------------------------------------------
.c0000CLIENT-TEST
Console> (enable)
The PBF gateway is now mapped to the PBF client as follows:
Console> (enable) show pbf gw
Name
Map
VLAN
Gateways
Adjacency
----------------------------------------------------------------
.g0001GATEWAY-TEST 10.0.0.100
Console> (enable)
The PBF map has been built as follows:
Console> (enable) show pbf-map
PBF MAP
Clients
---------------------------------------------
CLIENT-TEST
Console> (enable)
The set pbf-map macro command has created security ACL IP lists and security ACL map lists for the
PBF client and PBF gateway, but the macro command (set pbf-map CLIENT-TEST
GATEWAY-TEST) that created these security ACLs does not appear in the following configuration:
Console> (enable) show run
<SNIP>
!
#security ACLs
clear security acl all
#pbf set
set pbf mac 00-0d-65-36-1e-eb
#adj set
set security acl adjacency .c0000CLIENT-TEST 10 00-00-11-11-22-22 10.0.0.10
set security acl adjacency .g0001GATEWAY-TEST 1 11-11-22-22-33-33 10.0.0.100 23
#.cCLIENT-TEST
set security acl ip .cCLIENT-TEST permit arp
set security acl ip .cCLIENT-TEST permit arp-inspection any any
set security acl ip .cCLIENT-TEST redirect .g0001GATEWAY-TEST ip host 10.0.0.10
any
set security acl ip .cCLIENT-TEST permit ip any any
#.gGATEWAY-TEST
set security acl ip .gGATEWAY-TEST permit arp
set security acl ip .gGATEWAY-TEST redirect .c0000CLIENT-TEST ip any host 10.0.0
.10
set security acl ip .gGATEWAY-TEST permit ip any any
#
commit security acl all
set security acl map .cCLIENT-TEST 10
OL-8978-04
: CLIENT-TEST
: GATEWAY-TEST,
: 10
: 1
ip
10.0.0.10
: GATEWAY-TEST
: CLIENT-TEST,
: 1
: 1
ip
Gateways
GATEWAY-TEST
Unrelated configuration information cut out
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
mac
00-00-11-11-22-22
mask
mac
255.255.255.0 11-11-22-22-33-33
Configuring Policy-Based Forwarding
15-113

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 6506Catalyst 6509Catalyst 6513

Table of Contents