To specify what the switch does when a packet matches a permit command in a VLAN access control list (VACL), use the action command. To remove an action command, use the no form of this command.
action { drop forward }
no action { drop forward }
|
drop
|
Specifies that the switch drops the packet.
|
|
forward
|
Specifies that the switch forwards the packet to its destination port.
|
None
VLAN access-map configuration mode
|
Release
|
Modification
|
|
4.0(0)N1(1a)
|
This command was introduced.
|
The action command specifies the action that the device takes when a packet matches the conditions in the ACL specified by the match command.
This example shows how to create a VLAN access map named vlan-map-01, assign an IPv4 ACL named ip-acl-01 to the map, specify that the switch forwards packets matching the ACL, and enable statistics for traffic matching the map:
|
Command
|
Description
|
|---|---|
|
match
|
Specifies an ACL for traffic filtering in a VLAN access map.
|
|
show vlan access-map
|
Displays all VLAN access maps or a VLAN access map.
|
|
show vlan filter
|
Displays information about how a VLAN access map is applied.
|
|
statistics
|
Enables statistics for an access control list or VLAN access map.
|
|
vlan access-map
|
Configures a VLAN access map.
|
|
vlan filter
|
Applies a VLAN access map to one or more VLANs.
|