Cisco Cisco ACE Application Control Engine Module Manual Técnica

Descargar
Página de 9
source NAT or policy based routing.
Two Armed Mode  This topology is used when the device that makes the connection to the VIP
enters the ACE on a different VLAN than that on which the servers reside. If the servers have the
default gateway set to the ACE, there is no need for source NAT. The reply traffic returns to the ACE
before it is sent back to the client.
• 
Configure
In this section, you are presented with the information to configure the features described in this document.
Note: Use the Command Lookup Tool (registered customers only) to obtain more information on the
commands used in this section.
Network Diagram
This document uses this network setup:
Configurations
This document uses these configurations:
Catalyst 6500  ACE slot 2 C1 context
• 
Catalyst 6500  ACE slot 2 Admin context
• 
Catalyst 6500  MSFC configuration
• 
ACE C1 Context
 switch/C1#show run
Generating configuration....
access−list any line 8 extended permit icmp any any 
access−list any line 16 extended permit ip any any 
!−−− Access−list used to permit or 
!−−− deny traffic entering the ACE.