10-18
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 10 Configuring Network Access
Configuring Virtual Context VLAN Interfaces
Secondary IP Groups This option appears only when Interface Type is set to Routed.
Enter a maximum of four secondary IP groups for the VLAN. The IP,
alias IP, and peer IP addresses of each Secondary IP Group should be in
the same subnet.
Note You cannot configure secondary IP addresses on FT VLANs.
To create up to four secondary IP groups for the VLAN, do the
following:
a. Define one or more of the following secondary IP address types:
–
IP—Secondary IP address assigned to this interface.The
primary address must be active for the secondary address to be
active.
–
AliasIP—Secondary IP address of the alias associated with this
interface.
–
PeerIP—Secondary IP address of the remote peer.
–
Netmask—Secondary subnet mask to be used.
The ACE has a system limit of 1,024 for each secondary IP address
type.
b. Click Add to selection (right arrow) to add the group to the group
display area.
c. Repeat Steps 1 and 2 for each additional group.
d. (Optional) Rearrange the order in which the groups are listed by
selecting one of the group listings in the group display area and
click either Move item up in list (up arrow) or Move item down in
list (down arrow). Note that the ACE does not care what order the
groups are in.
e. (Optional) Edit a group or remove it from the list by selecting the
desired group in the group display area and click Remove from
selection (left arrow).
Input Policies From the Available list, double-click the policy map name that is
associated with this VLAN interface or use the right arrow to move it to
the Selected list. This policy map is to be applied to the inbound
direction of the interface; that is, all traffic received by this interface.
If you choose more than one policy map, use the Up and Down arrows
to choose the priority of the policy map in the Selected list. These
arrows modify the order of the policy maps for new VLANs only; they
do not modify the policy map order when editing an existing policy
map.
Input Access Group From the Available list, double-click an ACL name for the ACL input
access group to be associated with this VLAN interface or use the right
arrow to move it to the Selected list. Any ACL group listed in the
Selected list specifies that this access group is to be applied to the
inbound direction of the interface.
Table 10-3 VLAN Interface Attributes (continued)
Field Description
Comments to this Manuals