ACL and IP Filter Configuration

To configure icm-filter-ip_filter-2408 intent
 

In Device Management, select Configuration Deployments. From the DEPLOYMENT drop-down menu, select Logical.


Click on + TEMPLATE and select the IP Filter template.


Under + TARGETS, click NEs.

Select the NE and click ADD.


Click on View/ Edit Template Config.


Select the action that needs to be performed.


Click on +ADD to enter the IP filter details.


Enter the required attributes as shown below.

Entry ID, Description, and Match attributes:

IP attributes:

Action attributes:

Entry should look as follows:


Enter Filter Name and ID.


Click DEPLOY.


10 

Verify the filter is Deployed and the status is Aligned.


11 

Go to NFM-P and select Policies > Filters > ACL IP Filter.


12 

Verify entry is present in NFM-P and IP filter is created.


13 

Double-click on the entry to view the details.


14 

Click on the Local Definitions tab.


15 

Click on the entry to see more details.


16 

View the filter details under the Filter Entries tab.


17 

All the details related to the filter can be seen under the General tab and the Filter Properties tab.


18 

Verify the IP filter details in NE:

End of steps

MD creating IP Filter icm-filter-ip_filter-2408
 

Note: This intent can also be used to create filter for TCP, UDP, ICMP, IGMP, IGP, and EGP.

In Device Management, select Configuration Deployments. From the DEPLOYMENT drop-down menu, select Logical.


Click on + TEMPLATE and select the IP Filter template.


Under + TARGETS, click NEs.

Select the NE and click ADD.


Click on VIEW/EDIT TEMPLATE CONFIG.


Select the action that needs to be performed.


Click on +ADD to enter the IP filter details.


Enter the required details as shown below.

Entry ID, Description, and Match attributes:

Match and Action attributes:

Entry should look as follows:


Enter Filter Name and ID.


Click DEPLOY.


10 

Verify the filter is Deployed and the status is Aligned.


11 

Verify the IP filter details in NE:

View the figure

End of steps

To configure filter-ml-port-list_csros-23-10-1_23-11
 

In Device Management, select Configuration Deployments. From the DEPLOYMENT drop-down menu, select Logical.


Click on + Template and select filter-ml-port-list_csros.


Click on +TARGETS and select NEs. Select the NE and click ADD.


Click on VIEW/EDIT TEMPLATE CONFIG. Enter the required details as shown below and click UPDATE.


Enter the Port List name and select DEPLOY.


Log into NFM-P and navigate to Policies > Filter > Port List. Verify that the created port is listed.


Click on the Properties > Local Definitions and verify the details are present.


Log into NE and verify the same is deployed.

End of steps

To configure filter-ml-port-list_msros_23-10-1_23-11
 

In Device Management, select Configuration Deployments. From the DEPLOYMENT drop-down menu, select Logical.


Click on + TEMPLATE and select filter-ml-port-list_msros.


Click on +TARGETS and select NEs. Select the NE and click ADD.


Click on VIEW/EDIT TEMPLATE CONFIG. Enter the required details as shown below and click UPDATE.

Port Value:

Range:


Enter the Port List name and select DEPLOY.


Verify that the configuration is Deployed and Aligned.


Log into NE and verify the configuration is deployed.

Show command of the same configuration:

End of steps

To configure filter-ml-ip-prefix-list_msros_23-10-1_23-11
 

In Device Management, select Configuration Deployments. From the DEPLOYMENT drop-down menu, select Logical.


Click on + TEMPLATE and select filter-ml-ip-prefix-list_msros.


Click on +TARGETS and select NEs. Select the NE and click ADD.


Click on VIEW/EDIT TEMPLATE CONFIG.


Click + ADD and fill in the Create BGP Peers details:


Click + ADD and fill in the Prefix details:

View the figure

Click + ADD and fill in the Prefix Exclude details:


Enter the Prefix List Name and click DEPLOY.


Verify that the configuration is Deployed and Aligned.


10 

Log into NE and verify the configuration is deployed.

Configuration details:

Show command details:

End of steps