cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
408
Views
0
Helpful
3
Replies

IP Port ACL on switch

mike.gilner
Level 1
Level 1

Catalyst 3560

I'm want to block one particular local IP address from communicating with a server on a switch port, but allow all other IP addresses to communicate with it. Here is the ACL on the port the server is on:

deny host 10.16.5.138

permit any

Everything gets blocked when I put this ACL in place. How should the ACL read so I can do what I want to do?

3 Replies 3

joyride_us
Level 1
Level 1

Strange, this looks correct.

try :

permit any any

Does the 10.16.5.138 host get blocked at least ?

rolf.fischer_2
Level 1
Level 1

Did you consider if the trafic's direction is IN or OUT?

Maybe you only have to change IN to OUT with your access-group-command.

oops, traFFic of couse...

Review Cisco Networking for a $25 gift card