Administrator Guide

Table Of Contents
Enabling 802.1X................................................................................................................................................................. 86
Configuring dot1x Profile ................................................................................................................................................ 87
Configuring MAC addresses for a do1x Profile...........................................................................................................87
Configuring the Static MAB and MAB Profile ...........................................................................................................88
Configuring Critical VLAN .............................................................................................................................................. 89
Configuring Request Identity Re-Transmissions....................................................................................................... 89
Configuring a Quiet Period after a Failed Authentication..................................................................................90
Forcibly Authorizing or Unauthorizing a Port..............................................................................................................91
Re-Authenticating a Port................................................................................................................................................. 91
Configuring Timeouts....................................................................................................................................................... 92
Configuring Dynamic VLAN Assignment with Port Authentication...................................................................... 93
Guest and Authentication-Fail VLANs......................................................................................................................... 94
Configuring a Guest VLAN........................................................................................................................................95
Configuring an Authentication-Fail VLAN............................................................................................................. 95
Chapter 6: Access Control List (ACL) VLAN Groups and Content Addressable Memory (CAM).... 97
Optimizing CAM Utilization During the Attachment of ACLs to VLANs..............................................................97
Guidelines for Configuring ACL VLAN Groups........................................................................................................... 98
Configuring ACL VLAN Groups and Configuring FP Blocks for VLAN Parameters.......................................... 98
Configuring ACL VLAN Groups................................................................................................................................98
Configuring FP Blocks for VLAN Parameters.......................................................................................................99
Viewing CAM Usage....................................................................................................................................................... 100
Allocating FP Blocks for VLAN Processes................................................................................................................. 101
Chapter 7: Access Control Lists (ACLs)..................................................................................... 102
IP Access Control Lists (ACLs)....................................................................................................................................103
CAM Usage................................................................................................................................................................. 103
Implementing ACLs on Dell EMC Networking OS..............................................................................................104
Important Points to Remember....................................................................................................................................105
Configuration Task List for Route Maps..............................................................................................................106
Configuring Match Routes...................................................................................................................................... 108
Configuring Set Conditions..................................................................................................................................... 109
Configure a Route Map for Route Redistribution.............................................................................................. 109
Configure a Route Map for Route Tagging..........................................................................................................110
Continue Clause.......................................................................................................................................................... 110
IP Fragment Handling.......................................................................................................................................................111
IP Fragments ACL Examples.................................................................................................................................... 111
Layer 4 ACL Rules Examples.................................................................................................................................... 111
Configure a Standard IP ACL........................................................................................................................................ 112
Configuring a Standard IP ACL Filter.....................................................................................................................113
Configure an Extended IP ACL..................................................................................................................................... 114
Configuring Filters with a Sequence Number...................................................................................................... 114
Configuring Filters Without a Sequence Number............................................................................................... 116
Configure Layer 2 and Layer 3 ACLs........................................................................................................................... 117
Assign an IP ACL to an Interface..................................................................................................................................117
Applying an IP ACL...........................................................................................................................................................118
Counting ACL Hits......................................................................................................................................................118
Configure Ingress ACLs.................................................................................................................................................. 119
Configure Egress ACLs................................................................................................................................................... 119
Contents
5