Configuring and Storing VACLs and QoS ACLs in Flash Memory
Specify if the auto-config file should be used to overwrite the NVRAM configuration or be appended to
Step 3
what is currently in NVRAM.
Console> (enable) set boot config-register auto-config append
Configuration register is 0x12F
ignore-config: disabled
auto-config: recurring, append, sync disabled
console baud: 9600
boot: image specified by the boot system commands
Console> (enable)
Step 4
Specify if synchronization should be enabled or disabled. With synchronization enabled, the auto-config
file(s) synchronize automatically to the standby supervisor engine.
Console> (enable) set boot config-register auto-config sync enable
Configuration register is 0x12F
ignore-config: disabled
auto-config: recurring, append, sync enabled
console baud: 9600
boot: image specified by the boot system commands
Console> (enable)
Step 5
Save the committed VACL and QoS ACL configuration changes to the auto-config file.
Console> (enable) copy acl-config bootflash:switchapp.cfg
Upload ACL configuration to bootflash:switchapp.cfg
2843644 bytes available on device bootflash, proceed (y/n) [n]? y
ACL configuration has been copied successfully.
Console> (enable)
Delete the VACL and QoS ACL configuration from NVRAM.
Step 6
Console> (enable) clear config acl nvram
ACL configuration has been deleted from NVRAM.
Warning: Use the copy commands to save the ACL configuration to a file and
the 'set boot config-register auto-config' commands to configure the
auto-config feature.
Note
The VACL and QoS ACL mapping commands (set qos acl map and set security acl map) are also stored
in the auto-config file. If the VACL and QoS ACL configuration is in flash memory and you use the
mapping commands, you need to enter the copy command to save the configuration to flash memory.
The VACL and QoS ACL configuration is no longer in NVRAM. It is saved in the auto-config file
bootflash:switchapp.cfg and is appended to the NVRAM configuration at system startup.
After making any additional changes to the VACL and QoS ACL configuration and committing those
changes, you must enter the copy acl-config bootflash:switchapp.cfg command to save the
configuration to the auto-config file.
The auto-config file is synchronized automatically to the standby supervisor engine because
synchronization was enabled.
If you cannot write the VACL and QoS ACL configuration to flash memory, it is removed from NVRAM
and then the VACL and QoS ACL configuration exists in DRAM only. A system reset can cause the
VACL and QoS ACL configuration to revert to the default.
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
15-66
Chapter 15
Configuring Access Control
OL-8978-04