Whoops I meant that my understanding was that you can do it on ingress but
not on egress!

On Wed, Mar 3, 2010 at 4:04 PM, Adam Booth <[email protected]> wrote:

> Hi,
>
> I'm pretty sure that you can do a MAC filter on ingress (but not on
> ingress)
>
> mac access-list extended NoInboundVTP
> deny any host 0100.0ccc.cccc 0x2003 0x0
> permit any any
>
> For egress trunks I don't think you can do anything but ensure you are
> using MD5 authentication to stop swtches outside of your administrative L2
> domain from joining in...
>
> Cheers,
> Adam
>
> On Wed, Mar 3, 2010 at 3:28 PM, Nahskur Udniraht <
> [email protected]> wrote:
>
>> Dear All,
>>
>> can I use an access control mechanism to stop VTP messages over a trunk
>> link ? is it possible to do so ?
>>
>> --
>> Nahskur Udniraht
>>
>>
>> _______________________________________________
>> For more information regarding industry leading CCIE Lab training, please
>> visit www.ipexpert.com
>>
>>
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to