cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2931
Views
0
Helpful
1
Replies

ACL binding on SG 300 28P

uitmorand
Level 1
Level 1

Hello!

I have a question about ACL and binding. I have a SG300 28P and a couple of other linksys switches and Access points that are connected to it via trunks. The cisco SG300 28P  is running in layer3 mode and i have created a couple of vlans and one of them is a guest vlan. Now to my question, i create an ACL and an ACE that vill funktion so that guest vlan only can connect to the internet and not the rest of the internal network. And then i must bound the ACL to an interface port or lag, what i can see it is not possible to bind it to an vlan? so if i have a port on some of the other switches that is member of the guest vlan, vill the ACL on the SG 300 stop guest vlan trafic to the internal network that is comming from some of the other switches?

I hope you understand me becouse my englich es not the best.

/Morgan

1 Reply 1

David Hornstein
Level 7
Level 7

Hi morgan,

Sorry for the late reply, you probably have the answer by now.

The answer is yes as the ACL attaches to ethernet interfaces and pattern matches on incoming packets into the switch (ingress)

so it will filter or deny traffic coming in from other switches or attached switch ports.

Check a recent posting i did with some screen captures, show ACL in action ;

https://supportforums.cisco.com/thread/2061080?tstart=0

regards Dave