09-27-2013 01:21 PM - edited 03-07-2019 03:43 PM
Hi,
Is it possible to block outbound traffic on a layer 2 interface? While still allowing incoming traffic? If so, which commands would I use?
In essence, I want to place two ports on the same VLAN, where one port accepts traffic and the other sends traffic.
Thanks,
Davide
09-27-2013 07:24 PM
It can be done using this command
switchport unicast unicast suppression level
And the same for multicast and broadcast, but not sure why do you want to do that? And i believe it is not gonna work. You need to keep STP in you mind and it will block one of the ports
Sent from Cisco Technical Support iPhone App
09-30-2013 07:13 AM
Thanks
10-05-2013 06:16 AM
Hi Davide,
If I understand what you'll want to make, I recommend you read about "PRIVATE VLANS", it could be whatever you're looking for.
In this way you could separate ports in different vlans without worrying about STP.
http://en.wikipedia.org/wiki/Private_VLAN
http://blog.ine.com/2008/01/31/understanding-private-vlans/
Regards.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide