Administrator Guide

Table Of Contents
description (ACL VLAN Group)
Add a text description of an ACL VLAN group.
C9000 Series
Syntax
description text
Parameters
description
Enter a text to identify the ACL VLAN group (80 characters maximum).
Default No default behavior or values
Command Modes ACL-VLAN-GROUP CONFIGURATION (conf-acl-vl-grp)
Command
History
Version Description
9.9(0.0) Introduced on the C9010.
9.5(0.0) Introduced on the Z9500.
9.3(0.0) Introduced on the S4810, S4820T, and Z9000.
Usage
Information
Enter a description for each ACL VLAN group that you create for effective administrative and logging
purposes.
member vlan (ACL VLAN Group)
Add VLAN members to an ACL VLAN group.
C9000 Series
Syntax
member vlan {VLAN-range}
Parameters
VLAN-range
Enter the member VLANs using comma-separated VLAN IDs, a range of VLAN IDs,
a single VLAN ID, or a combination. For example:
Comma-separated: 3, 4, 6
Range: 5-10
Combination: 3, 4, 5-10, 8
Default None
Command Modes ACL-VLAN-GROUP CONFIGURATION (conf-acl-vl-grp)
Command
History
Version Description
9.9(0.0) Introduced on the C9010.
9.5(0.0) Introduced on the Z9500.
9.3(0.0) Introduced on the S4810, S4820T, and Z9000.
Usage
Information
At a maximum, there can be only 32 VLAN members in all ACL VLAN groups. A VLAN can belong to only
one ACL VLAN group at a time.
You can create an ACL VLAN group and attach the ACL with the VLAN members. The optimization
is applicable only when you create an ACL VLAN group. If you apply an ACL separately on the VLAN
interface, each ACL has a mapping with the VLAN and increased CAM space utilization occurs.
Attaching an ACL individually to VLAN interfaces is similar to the behavior of ACL-VLAN mapping storage
in CAM prior to the implementation of the ACL VLAN group functionality.
256 Access Control Lists (ACL)