Open danyill opened 1 month ago
We could provide a command sequence in addition to a configuration file with suitable exit commands.
exit
Something like the following:
! vlan 50 name P1_to_P2_ARecl ! exit ! vlan 210 name Bus_GOOSE_Fast_BusA ! exit ! vlan 211 name Bus_GOOSE_Slow_BusA ! exit ! vlan 213 name Bus_GOOSE_Slow_BusB ! exit ! vlan 250 name Bus_SMV_Bus_BusA ! exit ! vlan 2006 name Station_GOOSE ! exit ! vlan 2060 name Station_SMV ! exit ! vlan 1000 name Conventional_GOOSE exit ! interface GigabitEthernet1/0/1 description XAT Protection 2 LAN B to XAT_BusA_P2 F:ETH-BD-2FO:CH2 switchport trunk native vlan 102 switchport trunk allowed vlan 102,2006,2060,210,211,250,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out mac access-group al-GigabitEthernet1/0/1-out out ! exit ! interface GigabitEthernet1/0/2 description XAT Protection 2 LAN B to XAT_232_P2 F:ETH-BD-2FO:CH2 switchport trunk native vlan 102 switchport trunk allowed vlan 102,210,50,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out ! exit ! interface GigabitEthernet1/0/4 description XAT Protection 2 LAN B to XAT_T1_P2 F:ETH-BD-2FO:CH2 switchport trunk native vlan 102 switchport trunk allowed vlan 102,2006,2060,210,211,250,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out mac access-group al-GigabitEthernet1/0/4-out out ! exit ! interface GigabitEthernet1/0/6 description XAT Protection 2 LAN B to XAT_T2_C2 PORT1B switchport trunk native vlan 102 switchport trunk allowed vlan 102,210,213,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out ! exit ! interface GigabitEthernet1/0/7 description XAT Protection 2 LAN B to XAT_278_MU2 F:ETH-BD-2FO:CH2 switchport trunk native vlan 102 switchport trunk allowed vlan 102,2006,2060,210,211,250,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out mac access-group al-GigabitEthernet1/0/7-in in ! exit ! interface GigabitEthernet1/0/8 description XAT Protection 2 LAN B to XAT_232_MU2 F:ETH-BD-2FO:CH2 switchport trunk native vlan 102 switchport trunk allowed vlan 102,210,211,250,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out mac access-group al-GigabitEthernet1/0/8-in in ! exit ! interface GigabitEthernet1/0/10 description XAT Protection 2 LAN B to XAT_242_MU2 PortF_ETH-BD-2FO_CH2 switchport trunk native vlan 102 switchport trunk allowed vlan 102,210,211,250,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out mac access-group al-GigabitEthernet1/0/10-in in ! exit ! interface GigabitEthernet1/0/12 description XAT Protection 2 LAN B to XAT_T1_C2 PORT1B switchport trunk native vlan 102 switchport trunk allowed vlan 102,210,211,1000 switchport mode trunk load-interval 30 spanning-tree portfast trunk service-policy input pm-dss-prot-vlan-mark-in service-policy output pm-dss-lan-out ! mac access-list extended al-GigabitEthernet1/0/1-out permit any host 01-0C-CD-04-01-02 permit any host 01-0C-CD-04-01-00 permit any host 01-0C-CD-04-01-04 permit any host 01-0C-CD-04-01-05 deny any any 0x88ba 0x0 permit any any ! exit ! mac access-list extended al-GigabitEthernet1/0/4-out permit any host 01-0C-CD-04-01-01 permit any host 01-0C-CD-04-01-00 permit any host 01-0C-CD-04-01-04 permit any host 01-0C-CD-04-01-05 deny any any 0x88ba 0x0 permit any any ! exit ! mac access-list extended al-GigabitEthernet1/0/7-in permit any host 01-0C-CD-04-01-04 permit any host 01-0C-CD-04-01-06 deny any any 0x88ba 0x0 permit any any ! exit ! mac access-list extended al-GigabitEthernet1/0/8-in permit any host 01-0C-CD-04-01-02 deny any any 0x88ba 0x0 permit any any ! exit ! mac access-list extended al-GigabitEthernet1/0/10-in permit any host 01-0C-CD-04-01-00 deny any any 0x88ba 0x0 permit any any ! ! ! ACL Removal Command ! ! no mac access-list extended al-GigabitEthernet1/0/1-out no mac access-list extended al-GigabitEthernet1/0/4-out no mac access-list extended al-GigabitEthernet1/0/7-in no mac access-list extended al-GigabitEthernet1/0/8-in no mac access-list extended al-GigabitEthernet1/0/10-in
We could provide a command sequence in addition to a configuration file with suitable
exit
commands.Something like the following: