<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IDSM2 VACL configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534390#M98522</link>
    <description>&lt;P&gt;We have Cisco 6500 catalyst running on native IOS 12.1(13) and recently purchased a IDSM2 (5.1). I have succesfully tested it to run on promiscous mode, but I having problem on applying a VACL configuration. I want apply VACL so I could have a control on VLAN. I followed the config on the configuration manual on cisco site but still unsuccesfull. Anyone could help me on this? Hope someone could give sample config for this. Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Configuration Done: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;intrusion-detection module 5 data-port 1 capture allowed-vlan 1&lt;/P&gt;&lt;P&gt;intrusion-detection module 5 data-port 1 capture&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;vlan access-map CAPTURE 10&lt;/P&gt;&lt;P&gt;match ip address MATCH&lt;/P&gt;&lt;P&gt;action forward capture&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;ip access-list extended MATCH&lt;/P&gt;&lt;P&gt;permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cat6500:&lt;/P&gt;&lt;P&gt;Slot 1 : Sup2/MSFC2&lt;/P&gt;&lt;P&gt;Slot 3 : 48 Ports / RJ45 &lt;/P&gt;&lt;P&gt;Slot 5 : IDSM2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;note: Port 3/1 - 5 is member of Vlan 1&lt;/P&gt;&lt;P&gt;     - Succeful detecting in Span Port&lt;/P&gt;&lt;P&gt;     - VACL not succesful&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 09:59:55 GMT</pubDate>
    <dc:creator>koiflowerhorn</dc:creator>
    <dc:date>2019-03-10T09:59:55Z</dc:date>
    <item>
      <title>IDSM2 VACL configuration</title>
      <link>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534390#M98522</link>
      <description>&lt;P&gt;We have Cisco 6500 catalyst running on native IOS 12.1(13) and recently purchased a IDSM2 (5.1). I have succesfully tested it to run on promiscous mode, but I having problem on applying a VACL configuration. I want apply VACL so I could have a control on VLAN. I followed the config on the configuration manual on cisco site but still unsuccesfull. Anyone could help me on this? Hope someone could give sample config for this. Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Configuration Done: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;intrusion-detection module 5 data-port 1 capture allowed-vlan 1&lt;/P&gt;&lt;P&gt;intrusion-detection module 5 data-port 1 capture&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;vlan access-map CAPTURE 10&lt;/P&gt;&lt;P&gt;match ip address MATCH&lt;/P&gt;&lt;P&gt;action forward capture&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;ip access-list extended MATCH&lt;/P&gt;&lt;P&gt;permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cat6500:&lt;/P&gt;&lt;P&gt;Slot 1 : Sup2/MSFC2&lt;/P&gt;&lt;P&gt;Slot 3 : 48 Ports / RJ45 &lt;/P&gt;&lt;P&gt;Slot 5 : IDSM2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;note: Port 3/1 - 5 is member of Vlan 1&lt;/P&gt;&lt;P&gt;     - Succeful detecting in Span Port&lt;/P&gt;&lt;P&gt;     - VACL not succesful&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 09:59:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534390#M98522</guid>
      <dc:creator>koiflowerhorn</dc:creator>
      <dc:date>2019-03-10T09:59:55Z</dc:date>
    </item>
    <item>
      <title>Re: IDSM2 VACL configuration</title>
      <link>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534391#M98523</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;can you please show me the config of you Cat 6500 where you are defining the capturing ports and also where you are applying the filter CAPTURE to VLAN 1..  NOTE: IDSM2 uses ports 7 and 8  on the respective module ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 May 2006 01:57:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534391#M98523</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2006-05-03T01:57:29Z</dc:date>
    </item>
    <item>
      <title>Re: IDSM2 VACL configuration</title>
      <link>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534392#M98524</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Fernando,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;  Above is the exact  configuration I used. Plus ports 3/1 &amp;amp; 3/2 of as switcport access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 May 2006 05:31:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534392#M98524</guid>
      <dc:creator>koiflowerhorn</dc:creator>
      <dc:date>2006-05-03T05:31:12Z</dc:date>
    </item>
    <item>
      <title>Re: IDSM2 VACL configuration</title>
      <link>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534393#M98525</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Add the following to have the VLAN access-map only look at traffic on VLAN 1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;vlan filter CAPTURE vlan-list 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 May 2006 01:34:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm2-vacl-configuration/m-p/534393#M98525</guid>
      <dc:creator>DanielSpeck</dc:creator>
      <dc:date>2006-05-04T01:34:22Z</dc:date>
    </item>
  </channel>
</rss>

