Policy Basics CLIs SD Wan
Policy Basics CLIs SD Wan
Policy Basics CLIs SD Wan
site-id site-id
site-list list-name
tloc address
tloc-list list-name
action
reject
accept
export-to (vpn vpn-id | vpn-list list-name)
set
omp-tag number
preference value
service service-name (tloc ip-address | tloc-list list-name) [vpn vpn-id]
tloc-action action
tloc-list list-name
apply-policy
site-list list-name control-policy policy-name (in | out)
ospf-tag number
weight number
vpn vpn-id
router
bgp local-as-number
address-family ipv4_unicast
redistribute (connected | nat | omp | ospf | static) [route-policy policy-name]
neighbor address
address-family ipv4-unicast
route-policy policy-name (in | out)
ospf
redistribute (bgp | connected | nat | omp | static) route-policy policy-name
route-policy policy-name in
For IPv4
Configure on Cisco vEdge devices only.
policy
lists
prefix-list list-name
ip-prefix prefix/length
class-map
class class-name queue number
log-frequency number
mirror mirror-name
remote-dest ip-address source ip-address
policer policer-name
burst bytes
exceed action
rate bps
qos-map map-name
qos-scheduler scheduler-name
qos-scheduler scheduler-name
bandwidth-percent percentage
buffer-percent percentage
class class-name
drops (red-drop | tail-drop)
scheduling (llq | wrr)
rewrite-rule rule-name
policy
access-list acl-name
default-action action
sequence number
match
class class-name
destination-data-prefix-list list-name
destination-ip prefix/length
destination-port number
dscp number
packet-length number
plp (high | low)
protocol number
source-data-prefix-list list-name
source-ip prefix-length
source-port number
tcp flag
action
drop
count counter-name
log
accept
class class-name
count counter-name
log
mirror mirror-name
policer policer-name
set dscp value
vpn vpn-id
interface interface-name
access-list acl-name (in | out)
For IPv6
Configure on Cisco vEdge devices only.
policy ipv6
class-map
class class map map
mirror mirror-name
remote-dest ip-address source ip-address
policer policer-name
rate bandwidth
burst bytes
exceed action
policy ipv6
access-list list-name
sequence number
match
match-parameters
action
drop
count counter-name
log
accept
class class-name
mirror mirror-name
policer policer-name
default-action
(accept | drop)
vpn vpn-id
interface interface-name
ipv6 access-list list-name (in | out)
Operational Commands
show running-config