Administrative Access Filters—Filtering SNAP Frames on Output Example

Administrative Access Filters—Filtering SNAP Frames on Output Example

Figure 68 shows a router connecting four Token Rings.

Figure 68 Router Filtering SNAP Frames on Output

Token

Ring 3

T2

Router A

Token T1

Ring 2

T0

Token

Ring 1

Ring group 5

Token

T3 Ring 4

S1277a

The following example allows only AppleTalk Phase 2 packets to be source-route bridged between Token Rings 0 and 1, and allows Novell packets only to be source-route bridged between Token Rings 2 and 3.

source-bridge ring-group 5

!

interface tokenring 0

ip address 131.108.1.1 255.255.255.0 source-bridge 1000 1 5 source-bridge spanning source-bridge input-type-list 202

!

interface tokenring 1

ip address 131.108.11.1 255.255.255.0 source-bridge 1001 1 5 source-bridge spanning source-bridge input-type-list 202

!

interface tokenring 2

ip address 131.108.101.1 255.255.255.0 source-bridge 1002 1 5 source-bridge spanning source-bridge input-lsap-list 203

!

interface tokenring 3

ip address 131.108.111.1 255.255.255.0 source-bridge 1003 1 5 source-bridge spanning source-bridge input-lsap-list 203

!

!SNAP type code filtering

!permit ATp2 data (0x809B)

!permit ATp2 AARP (0x80F3)

access-list 202 permit 0x809B 0x0000 access-list 202 permit 0x80F3 0x0000 access-list 202 deny 0x0000 0xFFFF

!

!LSAP filtering

!permit IPX (0xE0E0)

Configuring Source-Route Bridging BC-161

Page 53
Image 53
Cisco Systems BC-109 manual Shows a router connecting four Token Rings