05-20-2006 02:40 PM - edited 03-09-2019 02:59 PM
Hi, i´m using a 3550 - 12G switch router as a core switch at my companys office, i have configure a series of vlan and the switch is making intervlan routing by default, the problem is that a i need to setup per vlan security, the classic extended acl´s are not an option because the scenario needs to have all vlan outbound traffic open and the inbound traffic restricted with just some ports open (www, ftp, Databases, ssh, etc.), i have tryed with reflexive acl but 3550 doesn´t support this feature neither CBAC and this is an urgent case. What can I do??
1 x Cisco 3550 - 12G (EMI) (core - InterVLAN Routing)
10 x Cisco 2950-SX Access Switch
3 x Cisco 2950-T Access Switch
05-25-2006 12:38 PM
3550 cannot be used as firewall.
Try:
http://www.cisco.com/en/US/products/hw/switches/ps646/prod_release_note09186a00801a63af.html
05-25-2006 04:54 PM
mmm ... It seems you might need to use another device for your intervlan routing such a PIX or an ASA .. but I guess that will not make the customer very happy ..
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide