hardware rate-limiter exception 495, 496
hardware rate-limiter fex 495, 496
hardware rate-limiter layer-3 glean 495, 496
hardware rate-limiter layer-3 multicast local-groups 495, 497
hardware rate-limiter span-egress 495, 497
host 274, 275, 276
I
interface policy dent 166, 167
ip access-class 237, 238
ip access-group 259, 260, 262, 263
ip access-list 233, 234, 235, 236, 237, 258, 265
ip arp inspection log-buffer entries 397, 398
ip arp inspection trust 395, 396
ip arp inspection validate 397
ip arp inspection validate dst-mac 397
ip arp inspection validate ip 397
ip arp inspection validate src-mac 397
ip arp inspection vlan 394, 398
ip dhcp packet strict-validation 329, 343
ip dhcp relay 348, 349, 351
ip dhcp relay address 352, 353
ip dhcp relay address use-vrf 352, 353
ip dhcp relay information option 349, 350
ip dhcp relay information option trust 345
ip dhcp relay information option vpn 351
ip dhcp relay information trust-all 347, 348
ip dhcp relay information trusted 346, 347
ip dhcp relay source-interface 353, 354
ip dhcp relay sub-option circuit-id customized 349, 350
ip dhcp relay sub-option circuit-id format-type string 349, 350
ip dhcp relay sub-option type cisco 351
ip dhcp smart-relay 355, 356
ip dhcp smart-relay global 354, 355
ip dhcp snooping information option 341, 342
ip dhcp snooping ipsg-excluded vlan 409
ip dhcp snooping trust 344
ip dhcp snooping verify mac-address 340
ip dhcp snooping vlan 339, 340
ip port access group 261
ip radius source-interface 50
ip source binding 408, 409
ip tacacs source-interface 79
ip verify source dhcp-snooping-vlan 407, 408
ip verify unicast source reachable-via 444, 445
ip verify unicast source reachable-via any 443
ipv6 access-class 237, 238
ipv6 access-list 233, 234, 235, 236, 237
ipv6 address use-link-local-only 362, 363
ipv6 dhcp relay 357
ipv6 dhcp relay address 359
ipv6 dhcp relay option type cisco 358
ipv6 dhcp relay option vpn 358
ipv6 dhcp relay source-interface 360
ipv6 port traffic-filter 261
ipv6 traffic-filter 259, 260
ipv6 verify unicast source reachable-via 444, 445
ipv6 verify unicast source reachable-via any 443
K
key 424, 425, 426, 428, 506, 507
key chain 421, 424, 426, 428, 506, 507
key config-key ascii 415, 423
key-chain macsec-psk no-show 506, 507
key-octet-string 506, 507
key-server-priority 509, 510
key-string 424, 425
L
ldap search-map 118
ldap-server deadtime 119, 120, 121
ldap-server host 111, 116, 117, 119, 120
ldap-server host idle-time 119, 120
ldap-server host password 112, 119, 120
ldap-server host port 112, 117
ldap-server host rootDN 112
ldap-server host test rootDN 119, 120
ldap-server host timeout 112, 117
ldap-server host username 119, 120
ldap-server timeout 115
licensing 183, 441
802.1X 183
Unicast RPF 441
limitations 310
port security 310
line vty 237
logging drop threshold 475, 476
logging ip access-list cache entries 262, 264
logging ip access-list cache interval 262, 263
logging ip access-list cache threshold 262, 264
logging ip access-list detailed 262, 264
login block-for 29, 30
login block-for attempts 29, 30
login on-failure log 22
login on-success log 22
login quiet-mode access-class 29, 30
M
mac access-list 287, 288
MAC addresses 303
learning 303
MAC authentication 181
bypass for 802.1X 181
mac packet-classify 292
mac port access-group 291
macsec policy 509, 510
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
IN-3
INDEX