Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Good morning
I am trying to figure out how to configure vlan ACL to filter mac addresses. And cannot make it work!
The goal is to block all mac-addresses inside vlan except those are permitted.
I found a great article which declares the same in the o...
Hello I have configured SSL-offload on CSM-S module in Router Mode(Nat Server) but seems that it works incorrectly.I have generated certificate, uploaded it and it works fine:ssl-proxy.csm10.slb3a.1732.la#sh ssl-proxy service CCARTSTORAGE
Service id:...
And this don't work either:
mac access-list extended not-securepermit any anymac access-list extended securepermit host 0800.27a5.05c5 anypermit any host 0800.27a5.05c5permit host 3c97.0e26.f302 anypermit any host 3c97.0e26.f302permit host b40c.258e...
This configuration blocks all traffic as well:
mac access-list extended securepermit host 0800.27a5.05c5 anypermit any host 0800.27a5.05c5permit host 3c97.0e26.f302 anypermit any host 3c97.0e26.f302permit host b40c.258e.e401 anypermit any host b40c....
the problem is resolved now.there were incorrectly configured secondary CSM-S ft as failover. and aliased ip addresses on server vlans caused ip conflict.
I started tcpdump on all three real servers.When I go through http, I see that traffic on real servers:17:32:18.944943 IP 95.79.133.64.61347 > 10.40.105.147.80: Flags [S], seq 1691755117, win 65535, options [mss 1452,nop,wscale 1,nop,nop,TS val 92136...