cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Join Customer Connection to register!
1592
Views
0
Helpful
1
Replies
normanzhang
Beginner

VACL on Nexus

I'm looking to setup IPS appliance with Nexus. Say I want IPS to monitor all traffic from VLAN 100 to VLAN200 on the same Nexus. Can I use VACL to setup flow to force traffic out from VLAN 100 to a specific port uplinked to IPS then back to the same Nexus?

VLAN100 --- Nexus --- IPS --- Nexus --- VLAN200

Thanks,

Norman

1 REPLY 1
dhristov
Cisco Employee

The VACL action that is used to copy traffic to IPS on 6500 is "Capture". Nexus  7000 does not support "Capture" based on the reference below. Instead of VACL Capture SPAN will give the same result.

Reference:

http://www.cisco.com/en/US/docs/switches/datacenter/sw/5_x/nx-os/security/configuration/guide/Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_5.x_chapter16.html#con_1111381