Chapter 5 Connecting the Management Interfaces and Performing Initial System Configuration

Initial System Configuration

Step 6 If you entered a specific IP address, enter the wildcard bits to define a range of IP addresses and press Enter. (See Entry Formats (on page 5-12).)

To define an individual IP address, type 0.0.0.0 and press Enter. There is no default for this parameter.

Enter wildcard bits:

Step 7 The maximum number of entries in an ACL is 20.

If the “any” option was used, no other IP addresses may be added to the list.

To add more entries, type y and press Enter

Would you like to add another entry to this list? [no]:y

Enter up to 20 entries as described in step 5 and step 6.

When all entries have been added, press Enter

Would you like to add another entry to this list? [no]:

Step 8 When all entries are added to one list, you are asked whether you would like to create another ACL. You may define up to 99 ACLs.

To create another ACL, type y and press Enter

Would you like to configure another list? [no]: y

Enter up to 20 IP addresses in this new ACL, as described in step 5 and step 6.

When all ACLs have been created, press Enter.

Would you like to configure another list? [no]:

You are now prompted to assign the desired ACLs to restrict IP and Telnet access. Step 9 Restrict IP access to the SCE 1000 by assigning the appropriate ACL.

Type the number of the ACL to be assigned to IP access and press Enter. To accept the default ACL, press Enter.

Enter IP access-class [0]:

Step 10 Restrict Telnet access to the SCE 1000 by assigning the appropriate ACL.

Type the number of the ACL to be assigned to the Telnet interface and press Enter.

To accept the default ACL, press Enter. Enter Telnet access-class [0]: 2

EXAMPLE:

This example illustrates a common access control scenario. Let us assume the following:

We want to permit every station to access the SCE on the management port (e.g. ping, SNMP polling etc.).

We want to restrict Telnet access to only a few permitted stations.

We therefore need to create two access control lists:

For general IP access — permit access to all IP addresses.

For Telnet — permit access to the specified IP address, and deny to all others.

Cisco SCE 1000 2xGBE Installation and Configuration Guide

5-14

OL-7821-04

 

 

 

 

Page 76
Image 76
Cisco Systems OL-7821-04, SCE 1000 2xGBE manual Enter wildcard bits

SCE 1000 2xGBE, OL-7821-04 specifications

Cisco Systems OL-7821-04, SCE 1000 2xGBE is an advanced network service appliance designed to deliver superior performance and reliability for service providers seeking to optimize their networks. This compact yet powerful device is integral in addressing the growing demands of data traffic in telecommunications and data centers.

One of the standout features of the SCE 1000 is its ability to support both IPv4 and IPv6 networks, ensuring compatibility with current and future networking protocols. This dual-stack capability empowers service providers to seamlessly transition and integrate next-generation applications without jeopardizing service quality.

The SCE 1000 is equipped with two Gigabit Ethernet (GbE) ports that enhance its connectivity options and allow for increased bandwidth. This dual-port configuration supports high-speed data transfers and streamlined operations, making it ideal for enterprises with substantial networking demands. Its flexible interface options facilitate easy integration into existing network architectures without requiring extensive reconfiguration.

An essential characteristic of the SCE 1000 is its advanced service creation technology, which allows for dynamic traffic management. This feature intelligently prioritizes and optimizes applications, ensuring that critical services receive the bandwidth they need while maintaining overall network efficiency. Service providers can leverage this capability to implement Quality of Service (QoS) policies, delivering a consistent user experience even during peak usage times.

Furthermore, the SCE 1000 supports various traffic engineering methods, including deep packet inspection and application recognition, enabling operators to monitor and control network traffic effectively. This capability is particularly crucial in identifying and mitigating potential network threats, resulting in enhanced security measures.

With its robust architecture, the device also offers scalability, accommodating the growing network requirements of service providers. As businesses grow and data use expands, the SCE 1000 can adapt without compromising performance.

In summary, the Cisco Systems OL-7821-04, SCE 1000 2xGBE is a versatile network service appliance that combines high performance, advanced service creation technology, and strong security features. It stands out as an essential tool for service providers aiming to enhance their network capabilities and deliver superior services to customers. Its dual GbE ports, IPv4/IPv6 support, and dynamic traffic management make it a reliable choice for organizations anticipating significant data growth.