30-73
Catalyst 3560 Switch Software Configuration Guide
78-16156-01
Chapter 30 Configuring IP Unicast Routing
Configuring Protocol-Independent Features
Beginning in privileged EXEC mode, follow these steps to configure PBR:
Command
Purpose
Step 1
configure terminal
Enter global configuration mode.
Step 2
route-map map-tag [permit | deny] [sequence
number]
Define any route maps used to control where packets are
output, and enter route-map configuration mode.
map-tag—A meaningful name for the route map. The ip
policy route-map interface configuration command uses this
name to reference the route map. Multiple route maps might
share the same map tag name.
(Optional) If permit is specified and the match criteria are
met for this route map, the route is policy-routed as controlled
by the set actions. If deny is specified, the route is not
policy-routed.
sequence number (Optional)— Number that shows the
position of a new route map in the list of route maps already
configured with the same name.
Step 3
match ip address {access-list-number |
access-list-name} [...access-list-number |
...access-list-name]
Match the source and destination IP address that is permitted
by one or more standard or extended access lists.
If you do not specify a match command, the route map applies
to all packets.
Step 4
set ip next-hop ip-address [...ip-address]
Specify the action to take on the packets that match the
criteria. Set next hop to which to route the packet (the next hop
must be adjacent).
Step 5
exit
Return to global configuration mode.
Step 6
interface interface-id
Enter interface configuration mode, and specify the interface
to configure.
Step 7
ip policy route-map map-tag
Enable PBR on a Layer 3 interface, and identify the route map
to use. You can configure only one route map on an interface.
However, you can have multiple route map entries with
different sequence numbers. These entries are evaluated in
sequence number order until the first match. If there is no
match, packets are routed as usual.
Step 8
ip route-cache policy
(Optional) Enable fast-switching PBR. You must first enable
PBR before enabling fast-switching PBR.
Step 9
exit
Return to global configuration mode.
Step 10
ip local policy route-map map-tag
(Optional) Enable local PBR to perform policy-based routing
on packets originating at the switch. This applies to packets
generated by the switch and not to incoming packets.
Step 11
end
Return to privileged EXEC mode.
Step 12
show route-map [map-name]
(Optional) Display all route maps configured or only the one
specified to verify configuration.
Step 13
show ip policy
(Optional) Display policy route maps attached to interfaces.