Multicast Packets; Configuring Vacls - Cisco 6500 Series Software Configuration Manual

Hide thumbs Also See for 6500 Series:
Table of Contents

Advertisement

Chapter 23
Configuring Network Security

Multicast Packets

Figure 23-3
need multicast expansion, the ACLs are applied in the following order:
1.
2.
3.
Figure 23-3 Applying VACLs on Multicast Packets
Host A
(VLAN 10)
Host C
(VLAN 10)

Configuring VACLs

These sections describe configuring VACLs:
78-14099-04
shows how ACLs are applied on packets that need multicast expansion. For packets that
Packets that need multicast expansion:
VACL for input VLAN
a.
Input Cisco IOS ACL
b.
Packets after multicast expansion:
Output Cisco IOS ACL
a.
VACL for output VLAN (not supported with PFC2)
b.
Packets originating from router—VACL for output VLAN
Catalyst 6500 Series Switch
Routed
Input IOS ACL
Bridged
VACL
VACL Configuration Overview, page 23-12
Defining a VLAN Access Map, page 23-12
Configuring a Match Clause in a VLAN Access Map Sequence, page 23-13
Configuring an Action Clause in a VLAN Access Map Sequence, page 23-14
Applying a VLAN Access Map, page 23-14
Verifying VLAN Access Map Configuration, page 23-15
Catalyst 6500 Series Switch Cisco IOS Software Configuration Guide—Release 12.1 E
IOS ACL for
output VLAN
for packets
with MSFC
originating from
router
MSFC
Output IOS ACL
VACL (Not supported
on PFC2)
Bridged
Configuring VLAN ACLs
Host B
(VLAN 20)
Host D
(VLAN 20)
23-11

Advertisement

Table of Contents
loading

Table of Contents