Specifications
Configuring Policy
May 18, 2009 Page 16 of 32
• append - (Optional) Appends any egress,
forbidden, or untagged specified VLANs to
the existing list. If append is not specified, all
previous settings for this VLAN list are
replaced
• clear - (Optional) Clears any egress,
forbidden or untagged VLANs specified from
the existing list.
• tci-overwrite - (Optional) Enhanced policy
that enables or disables TCI (Tag Control
Information) overwrite for this profile. When
enabled, rules configured for this profile are
allowed to overwrite user priority and other
classification information in the VLAN tag’s
TCI field. If this parameter is used in a profile,
TCI overwrite must be enabled on ports. See
Step 3 below.
• precedence - (Optional) Enhanced policy
that assigns a rule precedence to this profile.
Lower values will be given higher
precedence.
2. Optionally, for enhanced policy capable devices,
assign the action the device will apply to an
invalid or unknown policy.
• default-policy - Instructs the device to ignore
this result and search for the next policy
assignment rule.
• drop - Instructs the device to block traffic.
• forward - Instructs the device to forward
traffic.
set policy invalid action
{default-policy | drop | forward}
3. Optionally, for enhanced policy capable devices,
enable or disable the TCI overwrite function on
one or more ports.
set port tcioverwrite port-string
{enable | disable}
4. Optionally, for enhanced policy capable devices,
enable or disable policy accounting, which flags
classification rule hits.
set policy accounting {enable |
disable}
5. Optionally, for enhanced policy capable devices,
set the rule usage and extended format syslog
policy settings.
• machine-readable - (Optional) Sets the
formatting of rule usage messages to raw
data that a user script can format according
to the needs of the enterprise, otherwise
message is set to human readable.
• extended-format - (Optional) Sets the
control to include additional information in the
rule usage syslog messages, otherwise the
original rule usage syslog message format is
used.
set policy syslog
[machine-readable]
[extended-format]
Procedure 1 Configuring Policy Roles (continued)
Step Task Command(s)