API Guide

Table Of Contents
Usage Information The VLAN ContentAware Processor (VCAP) application is a pre-ingress CAP that modifies the VLAN settings
before packets are forwarded. To support the ACL CAM optimization functionality, the CAM carving feature is
enhanced. A total of four VACP groups are present, of which two are for fixed groups and the other two are for
dynamic groups. Out of the total of two dynamic groups, you can allocate zero, one, or two flow processor (FP)
blocks to iSCSI counters, Open Flow and ACL VLAN optimization. You can configure CAM FP blocks for only two
of these ACL VLAN services at a time. Use this command in Configuration Terminal Batch mode to configure in a
dual-homing setup.
description (ACL VLAN Group)
Add a text description of an ACL VLAN group.
C9000 Series
Syntax
description text
Parameters
description
Enter a text to identify the ACL VLAN group (80 characters maximum).
Default No default behavior or values
Command Modes ACL-VLAN-GROUP CONFIGURATION (conf-acl-vl-grp)
Command History
Version Description
9.9(0.0) Introduced on the C9010.
9.5(0.0) Introduced on the Z9500.
9.3(0.0) Introduced on the S4810, S4820T, and Z9000.
Usage Information Enter a description for each ACL VLAN group that you create for effective administrative and logging purposes.
ip access-group (ACL VLAN Group)
Apply an egress IP ACL to the ACL VLAN group.
C9000 Series
Syntax
ip access-group access-list-name out implicit-permit
Parameters
access-list-name
Enter the name of the egress IP ACL to be applied to member interfaces of the VLAN
group (140 characters maximum).
out Enter the keyword out to apply the ACL to outgoing traffic.
implicit-permit
Enter the keyword implicit-permit to change the default action of the ACL from
implicit-deny to implicit-permit (that is, if the traffic does not match the filters in the ACL,
the traffic is permitted instead of dropped).
Default None
Command Modes ACL-VLAN-GROUP CONFIGURATION (conf-acl-vl-grp)
Command History
Version Description
9.9(0.0) Introduced on the C9010.
9.5(0.0) Introduced on the Z9500.
9.3(0.0) Introduced on the S4810, S4820T, and Z9000.
Usage Information You can apply only an egress IP ACL on an ACL VLAN group.
250 Access Control Lists (ACL)