1-23
Software Configuration Guide—Release 15.0(2)SG
OL-23818-01
Chapter 1 Product Overview Security Features
Remote SPAN (RSPAN) is an extension of SPAN, where source ports and destination ports are
distributed across multiple switches, allowing remote monitoring of multiple switches across the
network. The traffic for each RSPAN session is carried over a user-specified RSPAN VLAN that is
dedicated for that RSPAN session on all participating switches.
For information on RSPAN, see Chapter 51, “Configuring SPAN and RSPAN.”

Web Content Coordination Protocol

Note WCCP version 1 is not supported.
Web Content Communication Protocol (WCCP) Version 2 Layer 2 redirection enables Catalyst 4500
series switches to transparently redirect content requests to the directly connected content engines by
using a Layer 2 and MAC address rewrite. The WCCPv2 Layer 2 redirection is accelerated in the
switching hardware, and is more efficient than Layer 3 redirection using Generic Routing Encapsulation
(GRE). The content engines in a cache cluster transparently store frequently accessed content, and then
fulfills successive requests for the same content, eliminating repetitive transmissions of identical content
from the original content servers. It supports the transparent redirection of HTTP and non-HTTP traffic
with ports or dynamic services, such as Web caching, HTTPS caching, File Transfer Protocol (FTP)
caching, proxy caching, media caching, and streaming services. WCCPv2 Layer 2 redirection is
typically deployed for transparent caching at network edge, such as regional or branch sites. WCCPv2
Layer 2 redirection cannot be enabled on the same input interface with PBR or VRF-lite. ACL-based
classification for Layer 2 redirection is not supported.
For information on WCCP, see Chapter 64, “Configuring WCCP Version 2 Services.”

XML-PI

eXtensible Markup Language Programmatic Interface (XML-PI) Release 1.0 leverages the Network
Configuration Protocol (NETCONF). It provides new data models that collect running configurations
and show command output down to the keyword level without requiring the technologies or external
XML-to-command line interface (CLI) gateways. XML-PI allows you to develop XML-based network
management applications to control any number of network devices simultaneously.
Refer to the following link for more details:
http://www.cisco.com/en/US/docs/ios/netmgmt/configuration/guide/nm_xmlpi_v1.html
Security Features
The Catalyst 4500 series switch offers network management and control through the CLI or through
alternative access methods, such as SNMP. The switch software supports these security features:
802.1X Identity-Based Network Security, page 1-24
Cisco TrustSec SGT Exchange Protocol (SXP) IPv4, page 1-25
Dynamic ARP Inspection, page 1-26
Dynamic Host Configuration Protocol Snooping, page 1-26
Flood Blocking, page 1-26