I think that at least on 3550 you couldn't apply concurrently port acls (on layer 2 ports) and vlan acls (on Layer 3 ports/SVIs). I'm not sure if this restriction applies on 3560 too.
Tom Zingale (tomz) wrote: > Yes on a vlan or port you can allow/deny tcp/ip traffic. See the docs > http://www.cisco.com/en/US/partner/products/hw/switches/ps5528/products_ > configuration_guide_chapter09186a008081da63.html > > > > _______________________________________________ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/