
Access Control Lists (ACLs) for the Series 3400cl and Series 6400cl Switches
Planning an ACL Application on a Series 3400cl or Series 6400cl Switch
■
ACLs Operate On Ports and Static Trunk Interfaces:
You can
assign an ACL to any port and/or any statically configured trunk on
the switch. ACLs do not operate with dynamic (LACP) trunks.
■
ACLs Screen Only the Traffic Entering the Switch on a Port or
Static Trunk Interface:
On a given interface, ACLs can screen
inbound traffic at the point where it enters the switch. In the 3400cl/
6400cl switches, ACLs do not screen traffic routed between VLANs
within the switch, between subnets in a multinetted VLAN, or at the
interface where the traffic exits from the switch. (See figure 10-2 on
page 10-10.)
■
Before Modifying an Applied ACL, You Must First Remove It
from All Assigned Interfaces:
An ACL cannot be changed while it
is assigned to an interface.
■
Before Deleting an Applied ACL, You Must First Remove It
from All Interfaces to Which It Is Assigned:
An assigned ACL
cannot be deleted.
■
Port and Static Trunk Interfaces:
•
Removing a port from an ACL-assigned trunk returns the port to its
default settings.
•
To add a port to a trunk when an ACL is already assigned to the port,
you must first remove the ACL assignment from the port.
•
Adding a new port to an ACL-assigned trunk automatically applies the
ACL to the new port.
10-29
Summary of Contents for 6400cl
Page 2: ......
Page 84: ...Static Virtual LANs VLANs VLAN Restrictions This page is intentionally unused 2 54 ...
Page 104: ...GVRP GVRP Operating Notes This page intentionally unused 3 20 ...
Page 274: ...Switch Meshing Operating Notes for Switch Meshing This page is intentionally unused 7 28 ...
Page 662: ... This page is intentionally unused 20 Index ...
Page 663: ......