White Papers

Table Of Contents
Default None
Command Modes ACL-VLAN-GROUP CONFIGURATION (conf-acl-vl-grp)
Command
History
Version Description
9.5.(0.0) Introduced on the Z9500.
9.3.(0.0) Introduced on the S4810, S4820T, and Z9000.
Usage
Information
You can apply only an egress IP ACL on an ACL VLAN group.
member vlan (ACL VLAN Group)
Add VLAN members to an ACL VLAN group.
Syntax
member vlan {VLAN-range}
Parameters
VLAN-range
Enter the member VLANs using comma-separated VLAN IDs, a range of VLAN IDs,
a single VLAN ID, or a combination. For example:
Comma-separated: 3, 4, 6
Range: 5-10
Combination: 3, 4, 5-10, 8
Default None
Command Modes ACL-VLAN-GROUP CONFIGURATION (conf-acl-vl-grp)
Command
History
Version Description
9.5.(0.0) Introduced on the Z9500.
9.3.(0.0) Introduced on the S4810, S4820T, and Z9000.
Usage
Information
At a maximum, there can be only 32 VLAN members in all ACL VLAN groups. A VLAN can belong to only
one ACL VLAN group at a time.
You can create an ACL VLAN group and attach the ACL with the VLAN members. The optimization
is applicable only when you create an ACL VLAN group. If you apply an ACL separately on the VLAN
interface, each ACL has a mapping with the VLAN and increased CAM space utilization occurs.
Attaching an ACL individually to VLAN interfaces is similar to the behavior of ACL-VLAN mapping storage
in CAM prior to the implementation of the ACL VLAN group functionality.
show acl-vlan-group
Display the configured ACL VLAN groups on the switch.
Syntax
show acl-vlan-group {group-name | detail}
Parameters
group-name
Display the configuration of an ACL VLAN group.
detail
Display information about all configured ACL VLAN groups in a line-by-line format.
Default No default behavior or values
Command Modes
EXEC
EXEC Privilege
202 Access Control Lists (ACL)