TCIS List Acct wrote:
>> Yes on a vlan or port you can allow/deny tcp/ip traffic. See the docs
>> http://www.cisco.com/en/US/partner/products/hw/switches/ps5528/products_
>> configuration_guide_chapter09186a008081da63.html
> Does this same feature (per port IP ACLs on a L2 interface) work on the 2
Tom Zingale (tomz) wrote:
> Yes on a vlan or port you can allow/deny tcp/ip traffic. See the docs
> http://www.cisco.com/en/US/partner/products/hw/switches/ps5528/products_
> configuration_guide_chapter09186a008081da63.html
>
Does this same feature (per port IP ACLs on a L2 interface) work on t
I think that at least on 3550 you couldn't apply concurrently port acls
(on layer 2 ports) and vlan acls (on Layer 3 ports/SVIs).
I'm not sure if this restriction applies on 3560 too.
Tom Zingale (tomz) wrote:
> Yes on a vlan or port you can allow/deny tcp/ip traffic. See the docs
> http://www.ci
> So I can apply an ACL on a Layer2 port, that allows/denies TCP/IP traffic? I
> know I can do this on some Foundry switches, but have never tried on a 35xx
> when
> the port is not a L3 port..
I did this several years ago with 3550 switches at my previous
employer. Worked just fine (though it
Tom Zingale (tomz) wrote:
> Yes on a vlan or port you can allow/deny tcp/ip traffic. See the docs
> http://www.cisco.com/en/US/partner/products/hw/switches/ps5528/products_
> configuration_guide_chapter09186a008081da63.html
>
Thanks, that link answers most of my questions. Performance wise, it
ECTED] On Behalf Of TCIS List Acct
> Sent: Tuesday, June 05, 2007 6:19 PM
> To: cisco-nsp@puck.nether.net
> Subject: Re: [c-nsp] WS-C3560G-48TS-S per port ACLs?
>
>
>
> Tom Zingale (tomz) wrote:
> > Yes the SMI software feature set supports ACL's on a per port basis
&
Tom Zingale (tomz) wrote:
> Yes the SMI software feature set supports ACL's on a per port basis
>
So I can apply an ACL on a Layer2 port, that allows/denies TCP/IP traffic? I
know I can do this on some Foundry switches, but have never tried on a 35xx
when
the port is not a L3 port..
--Mike
Yes the SMI software feature set supports ACL's on a per port basis
> -Original Message-
> From: [EMAIL PROTECTED] [mailto:cisco-nsp-
> [EMAIL PROTECTED] On Behalf Of TCIS List Acct
> Sent: Tuesday, June 05, 2007 11:46 AM
> To: cisco-nsp@puck.nether.net
> Subject: [
Can the WS-C3560G-48TS-S do extended access-lists on a per-port basis when
using the standard -S image?
--Mike
___
cisco-nsp mailing list cisco-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pi