Tom Zingale (tomz) wrote: > Yes on a vlan or port you can allow/deny tcp/ip traffic. See the docs > http://www.cisco.com/en/US/partner/products/hw/switches/ps5528/products_ > configuration_guide_chapter09186a008081da63.html >
Thanks, that link answers most of my questions. Performance wise, it looks like most of the ACL processing is done in hardware, which is good. We are primarily looking to provide basic firewalling of connected devices, and have no need for NAT or anything other than permit/deny rules. --Mike _______________________________________________ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/