C H A P T E R
62-1
Catalyst 4500 Series Switch, Cisco IOS Software Configuration Guide - Cisco IOS XE 3.9.xE and IOS 15.2(5)Ex
62
Configuring Network Security with ACLs
This chapter describes how to use access control lists (ACLs) to configure network security on the Cisco
Catalyst 4500 Series Switches.
Note
Cisco Catalyst 4500 Series Switches supports time-based ACLs.
This chapter consists of the following major sections:
•
•
Hardware and Software ACL Support, page 62-6
•
Troubleshooting High CPU Due to ACLs, page 62-7
•
TCAM Programming and ACLs, page 62-10
•
Layer 4 Operators in ACLs, page 62-10
•
Configuring Unicast MAC Address Filtering, page 62-16
•
Configuring Named MAC Extended ACLs, page 62-16
•
Configuring EtherType Matching, page 62-17
•
Configuring Named IPv6 ACLs, page 62-18
•
Applying IPv6 ACLs to Layer 2 and 3 Interface, page 62-20
•
Configuring VLAN Maps, page 62-21
•
Displaying VLAN Access Map Information, page 62-28
•
Using VLAN Maps with Router ACLs, page 62-28
•
•
Using PACL with VLAN Maps and Router ACLs, page 62-36
•
Configuring Object Group ACLs, page 62-39
•
Configuring RA Guard, page 62-49
Note
For complete syntax and usage information for the switch commands used in this chapter, see the
Cisco IOS Command Reference Guides for the Catalyst 4500 Series Switch
If a command is not in the
Cisco Catalyst 4500 Series Switch Command Reference
, you can locate it in
the
Summary of Contents for Catalyst 4500 Series
Page 2: ......
Page 4: ......
Page 2086: ...Index IN 46 Software Configuration Guide Release IOS XE 3 9 0E and IOS 15 2 5 E ...