cts role-based enforcement
To enable Cisco TrustSec role-based (security group) access control enforcement, use the
cts role-based
enforcement
command in global configuration mode. To disable the configuration, use the
no
form of this
command.
cts role-based enforcement
[
logging-interval interval
|
vlan-list
{
all
|
vlan-ID
[
,
] [
-
]}]
no cts role-based enforcement
[
logging-interval interval
|
vlan-list
{
all
|
vlan-ID
[
,
] [
-
]}]
Syntax Description
(Optional) Configures a logging interval for a security group access control list
(SGACL). Valid values for the
interval
argument are from 5 to 86400 seconds.
The default is 300 seconds
logging-interval interval
(Optional) Configures VLANs on which role-based ACLs are enforced.
vlan-list
(Optional) Specifies all VLANs.
all
(Optional) VLAN ID. Valid values are from 1 to 4094.
vlan-ID
(Optional) Specifies another VLAN separated by a comma.
,
(Optional) Specifies a range of VLANs separated by a hyphen.
-
Command Default
Role-based access control is not enforced.
Command Modes
Global configuration (config)
Command History
Modification
Release
This command was introduced.
Cisco IOS XE Denali 16.3.1
Usage Guidelines
RBACL and SGACL are used interchangeably.
Note
Use the
cts role-based enforcement
command to globally enable or disable SGACL enforcement for Cisco
TrustSec-enabled interfaces in the system.
The default interval after which log for a given flow is printed is 300 seconds. Use the
logging-interval
keyword to change the default interval. Logging is only triggered when the Cisco ACE Application Control
Engine has the
logging
keyword.
Command Reference, Cisco IOS XE Everest 16.5.1a (Catalyst 3650 Switches)
731
cts role-based enforcement
Содержание Catalyst 3650 Series
Страница 2: ... 2017 Cisco Systems Inc All rights reserved ...
Страница 37: ...P A R T I Campus Fabric Campus Fabric page 13 ...
Страница 38: ......
Страница 51: ...P A R T II Interface and Hardware Components Interface and Hardware Commands page 27 ...
Страница 52: ......
Страница 164: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 138 voice vlan network policy configuration ...
Страница 165: ...P A R T III IP IP page 141 ...
Страница 166: ......
Страница 197: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 171 ip address pool DHCP ...
Страница 235: ...P A R T IV IP Multicast Routing IP Multicast Routing page 211 ...
Страница 236: ......
Страница 302: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 276 show platform ip multicast ...
Страница 303: ...P A R T V IPv6 IPv6 page 279 ...
Страница 304: ......
Страница 305: ...IPv6 ipv6 flow monitor page 280 Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 279 ...
Страница 307: ...P A R T VI Layer 2 3 Layer 2 3 page 283 ...
Страница 308: ......
Страница 399: ...P A R T VII Multiprotocol Label Switching MPLS MPLS page 375 Multicast VPN page 385 ...
Страница 400: ......
Страница 428: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 402 show ip pim mdt send ...
Страница 429: ...P A R T VIII Network Management Flexible NetFlow page 405 Network Management page 479 ...
Страница 430: ......
Страница 595: ...P A R T IX Programmability Programmability page 571 ...
Страница 596: ......
Страница 624: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 598 ping6 ...
Страница 625: ...P A R T X QoS Auto QoS page 601 QoS page 641 ...
Страница 626: ......
Страница 666: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 640 show auto qos ...
Страница 706: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 680 trust device ...
Страница 707: ...P A R T XI Routing Bidirectional Forwarding Detection page 683 ...
Страница 708: ......
Страница 725: ...P A R T XII Security Security page 701 ...
Страница 726: ......
Страница 828: ...Fail 0 Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 802 show aaa local ...
Страница 875: ...P A R T XIII Stack Manager and High Availability Stack Manager and High Availability page 851 ...
Страница 876: ......
Страница 911: ...P A R T XIV System Management Autonomic Networking page 887 System Management page 903 Tracing page 983 ...
Страница 912: ......
Страница 1026: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 1000 request platform software trace filter binary ...
Страница 1027: ...P A R T XV VLAN VLAN page 1003 ...
Страница 1028: ......
Страница 1100: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 1074 vtp primary ...
Страница 1102: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches 1076 Notices ...
Страница 1108: ...Command Reference Cisco IOS XE Everest 16 5 1a Catalyst 3650 Switches IN 6 Index ...