Chapter 9
| General Security Measures
Port-based Traffic Segmentation
– 315 –
Example
This example enables traffic segmentation, and then sets port 10 as the uplink
and ports 5-8 as downlinks.
Console(config)#traffic-segmentation
Console(config)#traffic-segmentation uplink ethernet 1/10
downlink ethernet 1/5-8
Console(config)#
traffic-segmentation
uplink-to-uplink
This command specifies whether or not traffic can be forwarded between
uplink ports assigned to different client sessions. Use the
no
form to restore
the default.
Syntax
[
no
]
traffic-segmentation uplink-to-uplink
{
blocking
|
forwarding
}
blocking
– Blocks traffic between uplink ports assigned to different
sessions.
forwarding
– Forwards traffic between uplink ports assigned to
different sessions.
Default Setting
Blocking
Command Mode
Global Configuration
Example
This example enables forwarding of traffic between uplink ports assigned to
different client sessions.
Console(config)#traffic-segmentation uplink-to-uplink forwarding
Console(config)#
show
traffic-segmentation
This command displays the configured traffic segments.
Command Mode
Privileged Exec
Example
Console#show traffic-segmentation
Traffic segmentation Status : Disabled
Uplink-to-Uplink Mode : Forwarding
Traffic segmentation Status : Disabled