Administrator Guide

Table Of Contents
Chapter 6: Access Control Lists (ACLs).......................................................................................79
IP Access Control Lists (ACLs)......................................................................................................................................79
CAM Usage................................................................................................................................................................... 80
Implementing ACLs on Dell Networking OS...........................................................................................................81
IP Fragment Handling.......................................................................................................................................................82
IP Fragments ACL Examples.....................................................................................................................................82
Layer 4 ACL Rules Examples.................................................................................................................................... 82
Configure a Standard IP ACL......................................................................................................................................... 83
Configuring a Standard IP ACL Filter..................................................................................................................... 84
Configure an Extended IP ACL...................................................................................................................................... 85
Configuring Filters with a Sequence Number.......................................................................................................85
Configuring Filters Without a Sequence Number................................................................................................86
Configure Layer 2 and Layer 3 ACLs............................................................................................................................87
Assign an IP ACL to an Interface...................................................................................................................................87
Applying an IP ACL............................................................................................................................................................87
Counting ACL Hits.......................................................................................................................................................88
Configure Ingress ACLs................................................................................................................................................... 88
Configure Egress ACLs....................................................................................................................................................89
Applying Egress Layer 3 ACLs (Control-Plane)................................................................................................... 90
IP Prefix Lists..................................................................................................................................................................... 90
Configuration Task List for Prefix Lists.................................................................................................................. 91
ACL Resequencing............................................................................................................................................................ 94
Resequencing an ACL or Prefix List....................................................................................................................... 94
Route Maps........................................................................................................................................................................ 95
Important Points to Remember..................................................................................................................................... 96
Configuration Task List for Route Maps................................................................................................................96
Configuring Match Routes........................................................................................................................................ 98
Configuring Set Conditions.......................................................................................................................................99
Configure a Route Map for Route Redistribution.............................................................................................. 100
Configure a Route Map for Route Tagging......................................................................................................... 100
Continue Clause.......................................................................................................................................................... 101
Logging of ACL Processes............................................................................................................................................. 101
Guidelines for Configuring ACL Logging.................................................................................................................... 102
Configuring ACL Logging...............................................................................................................................................102
Flow-Based Monitoring Support for ACLs................................................................................................................ 103
Enabling Flow-Based Monitoring................................................................................................................................. 104
Chapter 7: Access Control List (ACL) VLAN Groups and Content Addressable Memory (CAM)...106
Optimizing CAM Utilization During the Attachment of ACLs to VLANs............................................................106
Guidelines for Configuring ACL VLAN groups.......................................................................................................... 107
Configuring ACL VLAN Groups and Configuring FP Blocks for VLAN Parameters........................................ 108
Configuring ACL VLAN Groups.............................................................................................................................. 108
Configuring FP Blocks for VLAN Parameters.....................................................................................................109
Viewing CAM Usage....................................................................................................................................................... 109
Allocating FP Blocks for VLAN Processes................................................................................................................. 110
Chapter 8: Bidirectional Forwarding Detection (BFD)................................................................. 112
How BFD Works................................................................................................................................................................112
Contents
5