cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1546
Views
0
Helpful
1
Replies

Trustsec SGACL

I am creating rules (SGACL) for a trustsec matrix.

I found a variation on how to permit and deny service ports.

Please tell me if there is a way to deny and permit ip addresses of hosts?

1 Accepted Solution

Accepted Solutions

Damien Miller
VIP Alumni
VIP Alumni

SGACLs are IP agnostic other than the extent where they can apply to all, or selectively to ipv4/ipv6 traffic. You cannot directly place an IP address within an SGACL, it is strictly SGT to SGT enforcement. 

 

View solution in original post

1 Reply 1

Damien Miller
VIP Alumni
VIP Alumni

SGACLs are IP agnostic other than the extent where they can apply to all, or selectively to ipv4/ipv6 traffic. You cannot directly place an IP address within an SGACL, it is strictly SGT to SGT enforcement. 

 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: