Can I have one vlan acces list and filter it across multiple VLANs? Like so:
ip access-list extended VLAN_BLOCK_SNMP
.................
permit udp 172.23.22.0 0.0.0.255 192.168.55.0 0.0.0.255 eq snmp
permit udp 172.23.23.0 0.0.0.255 192.168.55.0 0.0.0.255 eq snmp
permit udp 172.23.27.0 0.0.0.255 192.168.55.0 0.0.0.255 eq snmp
permit udp 172.23.28.0 0.0.0.255 192.168.55.0 0.0.0.255 eq snmp
permit udp 172.23.22.0 0.0.0.255 10.30.3.0 0.0.0.255 eq snmp
permit udp 172.23.23.0 0.0.0.255 10.30.3.0 0.0.0.255 eq snmp
permit udp 172.23.27.0 0.0.0.255 10.30.3.0 0.0.0.255 eq snmp
permit udp 172.23.28.0 0.0.0.255 10.30.3.0 0.0.0.255 eq snmp
permit udp 172.23.22.0 0.0.0.255 host 172.23.16.5 eq snmp
permit udp 172.23.22.0 0.0.0.255 host 172.23.18.21 eq snmp
permit udp 172.23.22.0 0.0.0.255 host 172.23.18.1 eq snmp
.................
vlan access-map BLOCK_SNMP 10
action drop
match ip address VLAN_BLOCK_SNMP
vlan access-map BLOCK_SNMP 20
action forward
!
vlan filter BLOCK_SNMP vlan-list 9,22-23