beautypg.com

Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 387

background image

accounting, pre-requisites for ACL accounting

141

adding a comment to an entry

124

adding a comment to an IPv6 entry

165

applying an IPv4 ACL to a subset of ports (Layer
3)

132

applying an IPv4 ACL to VLAN members (Layer 2)

131

applying egress to CPU traffic

122

applying IPv6 to a trunk group

165

applying to a virtual interface in a VLAN

125

comment text management

123

configuration example

109

configuration example for extended named

118

configuration examples for extended

112

configuration notes for filtering

130

configuration tasks for logging

127

configuring for ARP filtering

133

configuring IPv6

156

configuring standard ACLs

107

configuring the route map

147

creating IPv6

158

default and implicit IPv6 action

157

deleting a comment from an entry

124

deleting a comment from an IPv6 entry

166

deny | permit

159

displaying ACL information

143

displaying filters for ARP

134

displaying IPv6

168

displaying log entries

128

DSCP matching

140

enabling and viewing hardware usage statistics

142

enabling filtering based on VE port membership

130

enabling filtering based on VLAN membership

130

enabling IPv6 on an interface

164

enabling strict control of fragmented packet
filtering

128

enabling support for switched traffic

129

example logging configuration

127

extended named configuration

118

extended number configuration

112

filtering ARP packets

132

filtering on IP precedence and ToS values

134

hardware-based configuration considerations

106

how hardware-based ACLs work

106

IDs and entries

104

IPv6 configuration notes

155

IPv6 overview

153

ipv6 traffic-filter incommand

ipv6 traffic-filter

165

IPv6 traffic filtering criteria

154

logging

126

numbering and naming

105

overview

103

policy-based routing (PBR)

144

preserving user input for TCP/UDP port numbers

122

QoS options

135

remark

123

standard named configuration

109

statistics

140

supported features on inbound traffic

101

supported features on outbound traffic

101

support for IPv6 logging

166

TCP flags and edge port security

135

troubleshooting

144

types

104

using to change the forwarding queue

139

using to control multicast features

142

using to map the DSCP value

136

viewing comments

124

ACL-based rate limiting

140

ACL Log

acl-logging

127

logging-enablecommand

logging-enable

127

ARP

clearing the filter count

134

configuring an inspection entry

334

authentication

entering privileged EXEC mode

52

authorization

configuring command authorization

55

C

command

aaa accounting dot1x

200

aaa accounting exec default start-stop radius |
tacacs+ | none

56

aaa authentication dot1x default

181

aaa authentication enable

50

aaa authentication enable | login default

67

aaa authentication enable implicit-user

52

aaa authentication login privilege-mode

52

aaa authentication snmp-server | web-server | enable |

login defaultsecurity

FastIron Ethernet Switch Security Configuration Guide

387

53-1003088-03