【正文】
2022, Cisco Systems, Inc. All rights reserved. BCMSN — 929 Types of ACLs 169。 2022, Cisco Systems, Inc. All rights reserved. BCMSN — 914 Summary ? Performance management maintains interwork performance at acceptable levels by measuring and managing various work performance variables. ? SPAN selects and copies work traffic to send to a work analyzer. ? Remote SPAN is a variation of SPAN that sends monitored traffic through an intermediate switch rather than directly to the traffic analyzer. ? A NAM uses SNMP RMON information to monitor and analyze work traffic. ? Use the show mands to verify NAM configuration. 169。169。 2022, Cisco Systems, Inc. All rights reserved. 915 Securing Multilayer Switched Networks 169。 2022, Cisco Systems, Inc. All rights reserved. BCMSN — 930 Configuring VACLs Switch(config)vlan accessmap map_name [seq] ? Defines a VLAN access map Switch(configaccessmap) match {ip address {1199 | 13002699 | acl_name} | ipx address {800999 | acl_name}| mac address acl_name} ? Configures the match clause in a VLAN access map sequence Switch(configaccessmap)action {drop [log]} | {forward [capture]} | {redirect {type slot/port} | {portchannel channel_id}} ? Configures the action clause in a VLAN access map sequence Switch(config)vlan filter map_name vlan_list list ? Applies the VLAN access map to the specified VLANs 169。 2022, Cisco Systems, Inc. All rights reserved. BCMSN — 928 Verifying Port Security (Cont.) Switchshow portsecurity address ? Displays MAC address table security information Switchshow portsecurity address Secure Mac Address Table Vlan Mac Address Type Ports Remaining Age (mins) 1 SecureDynamic Fa5/1 15 (I) 1 SecureDynamic Fa5/1 15 (I) 1 SecureConfigured Fa5/1 16 (I) 1 SecureConfigured Fa5/1 1 SecureConfigured Fa5/1 1 SecureConfigured Fa5/5 23 1 SecureConfigured Fa5/5 23 1 SecureConfigured Fa5/5 23 1 SecureConfigured Fa5/11 25 (I) 1 SecureConfigured Fa5/11 25 (I) Total Addresses in System: 10 Max Addresses limit in System: 128 169。 2022, Cisco Systems, Inc. All rights reserved. BCMSN — 913 Verifying NAM Switchshow module ? Displays information about installed modules Switchshow module Mod Ports Card Type Model Serial No. 2 2 Catalyst 6000 supervisor 2 (Active) WSX6KSUP22GE SAD0410050B 3 48 48 port 10/100 mb RJ45 ether WSX6248RJ45 SAD03080485 5 2 Network Analysis Module WSX6380NAM SAD05130AXB