2.2.4
|
Configuring router ACLs
Switch#show access-lists number|name
Switch#show ip access-lists number|name
Switch(config)#access-list num(1-99) permit|deny destination-address wildcard-mask
Switch(config)#end
Switch#show access-list
Switch(config)#interface interface-id
Switch(config-if)#ip access-group ACL-No. out
Switch(config)#access-list num(100-199) permit|deny ip|tcp|udp [source-address
source-wildcard-mask] [destination-address
destination-wildcard-mask]
|
2.2.5
|
Configuring VLAN maps
Switch(config)#vlan access-map
Switch(config)#no vlan access-map
Switch(config)#ip access-list extended ip1
Switch(config)#vlan access-map map_1 10
Switch(config-access-map)#match ip address access-list
Switch(config-access-map)#action drop|forward
Switch(config)#vlan filter map map-id-number vlan-list vlan-range
Switch#show vlan access-map [mapname]
Switch#show vlan filter [access-map name | vlan vlan-id]
|
2.2.6
|
Using VLAN maps with router ACLs
permit...
permit...
permit...
deny ip any any
or
deny...
deny...
deny...
permit ip any any
Switch#show fm vlan vlan-id
Switch#show fm interface interface-id
Switch#show fm label name
|
2.4.1
|
Configuring static VLANs
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan number
Switch(config)#interface range start-interface-id - finish-interface-number
Switch(config-if-range)#switchport access vlan vlan-id
|
2.4.2
|
Verify VLAN configuration
Switch#show vlan brief
|
2.4.4
|
VMPS operation
Switch#configure terminal
Switch(config)#vmps server ipaddress primary
Switch(config)#interface interface
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan dynamic
Switch#show vmps.
Switch#show interface interface switchport
|
2.5.2
|
Configuring a VLAN trunk
Switch(config-if)#switchport trunk
Switch(config-if)#switchport mode trunk
Switch(config-if)#switchport trunk encapsulation [dot1q | isl]
Switch(config-if)#switchport trunk native vlan vlan-id
|
2.5.3
|
Removing VLANs from a trunk
Switch(config-if)#switchport trunk allowed vlan remove vlan-list
|
2.7.4
|
Adding a switch to a VTP domain
Switch#vtp password password
Switch(vlan)#vtp password password
|
2.8.3
|
Configure the VTP domain
Switch(vlan)#vtp domain name
|
2.8.4
|
Configure the VTP mode
Switch#vlan database
Switch(vlan)#vtp [client | server | transparent]
|
2.8.5
|
Verify VTP configuration
Switch#show vtp status
Switch#show vtp counters
|
2.8.7
|
Configure VTP pruning
Switch(vlan)#vtp pruning
Switch(config-if)#switchport trunk pruning vlan remove vlan vlan-id
|
2.8.8
|
Verify VTP pruning
Switch#debug sw-vlan vtp pruning
|