Configuring a class map using an ACL

To configure a classification or class map by using an ACL, follow these steps.

Procedure

  1. Enter global configuration mode.
    device# configure terminal
    
  2. Create an IP access list to define the traffic.
    1. Create and name a standard IP access list and enter IP ACL configuration mode.
      device(config)# ip access-list standard ip_acl
      
    2. Allow traffic from a specific IP address.
      device(conf-ipacl-std)# permit host 10.10.10.0
      
    3. Exit IP ACL configuration mode to global configuration mode.
      device(conf-ipacl-std)# exit
      
    For details on creating access lists, refer to the Extreme SLX-OS Security Configuration Guide for the device.
  3. Verify the IP ACL.
    device(config)# do show running-config | include ip_acl
    ip access-list standard ip_acl
    
  4. Create and name a class map.
    device(config)# class-map class_1
    
  5. Provide match criteria for the class.
    device(config-classmap)# match access-group ip_acl
    
  6. Return to privileged EXEC mode.
    device(config-classmap)# end
    
  7. Verify the class configuration.
    device# show running-config | include class
    ...
    class-map cee
    class-map class_1
    class-map default
    
  8. Save the running-config file to the startup-config file.
    device# copy running-config startup-config
    

Class map using an ACL configuration example

device# configure terminal
device(config)# ip access-list standard IP_acl
device(conf-ipacl-std)# permit host 10.10.10.0
device(conf-ipacl-std)# exit
device(config)# do show running-config | include ip_acl
device(config)# class-map class_1
device(config-classmap)# match access-group ip_acl
device(config-classmap)# end
device# show running-config | include class
device# copy running-config startup-config