Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

What does this mean in a Cisco Switch Config?

Posted on 2013-12-23
3
896 Views
Last Modified: 2013-12-23
We are upgrading from a 3550 to a 3750 switch, and the only thing in the config I don't understand is this.

3550
ip access-list extended CMP-NAT-ACL
 dynamic Cluster-HSRP deny   ip any any
 dynamic Cluster-NAT permit ip any any

Open in new window


If I try to enter it into the 3750 I get this error.
% Only one dynamic entry can be configured per ACL.

Open in new window

and the config is saved at this.
ip access-list extended CMP-NAT-ACL
 dynamic Cluster-HSRP deny   ip any any

Open in new window


What does this policy do?  What should it be?
0
Comment
Question by:pamsauto
  • 2
3 Comments
 
LVL 15

Expert Comment

by:WalkaboutTigger
ID: 39736716
So the first place I would point you to is this Cisco article on HSRP with a 3560 switch -
http://www.cisco.com/en/US/docs/switches/lan/catalyst3560/software/release/12.2_52_se/configuration/guide/swhsrp.html

and its corresponding document for the 3750
http://www.cisco.com/en/US/docs/switches/lan/catalyst3750/software/release/12.2_55_se/configuration/guide/swhsrp.html

Are you using HSRP?
0
 

Author Comment

by:pamsauto
ID: 39736727
We only have one internet connection, so I would say no to using HSRP.
0
 
LVL 15

Accepted Solution

by:
WalkaboutTigger earned 500 total points
ID: 39736738
Then, in my opinion, you can completely ignore this bit of the configuration unless there are other bits of the ACL you need.

But if you're not using HSRP, you can ignore the dynamic entries listed in your question.
0

Featured Post

Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
I had an issue with InstallShield not being able to use Computer Browser service on Windows Server 2012. Here is the solution I found.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question