Configuring Port-Based ACLs
Example 3
This example shows a port that is configured in merge mode but the port has not been mapped to an ACL:
Console> (enable) set port security-acl 3/1 merge
ACL interface is set to merge mode for port(s) 3/1.
Console> (enable) show port security-acl 3/1
Port
----- -------------- -------------- ----------------------
3/1
Config:
Port
----- -------------------------------- ----
No ACL is mapped to port 3/1.
Runtime:
Port
----- -------------------------------- ----
No ACL is mapped to port 3/1.
dhcp-snooping:
Port
----- -----------
3/1
Console> (enable) set security acl map ipacl1 3/1
ACL ipacl1 is successfully mapped to port(s) 3/1.
Console> (enable) show port security-acl 3/1
Port
----- -------------- -------------- ----------------------
3/1
Config:
Port
----- -------------------------------- ----
3/1
Runtime:
Port
----- -------------------------------- ----
3/1
dhcp-snooping:
Port
----- -----------
3/1
Console> (enable)
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
15-78
Interface Type Interface Type Interface Merge Status
config
runtime
merge
ACL name
ACL name
Trust
Source-Guard
------------
untrusted
disabled
Interface Type Interface Type Interface Merge Status
config
runtime
merge
ACL name
ipacl1
ACL name
ipacl1
Trust
Source-Guard
------------
untrusted
disabled
runtime
merge
(VLAN 5) inactive
Type
Type
Source-Guarded IP Addresses
---------------------------
runtime
merge
(VLAN 5) active
Type
IP
Type
IP
Source-Guarded IP Addresses
---------------------------
Chapter 15
Configuring Access Control
OL-8978-04