[cisco-bba] isolate virtual access interfaces
Tassos Chatzithomaoglou
achatz at forthnet.gr
Thu Jul 6 14:38:32 EDT 2006
That would be a very nice implementation (although trickier than simple acls), but according to CCO
it's supported only on 10k.
--
Tassos
Oliver Boehmer (oboehmer) wrote on 6/7/2006 20:54:
> Tassos Chatzithomaoglou <> wrote on Thursday, July 06, 2006 12:39 PM:
>
>> Is there an easy way of making all the vpdn sessions terminating
>> under a common vtemplate (through l2tp) not to be able to see each
>> other (but continue to have access to everywhere else)?
>
> If you can put the subscribers into a VRF (possibly using VRF-lite),
> check out the Half-Duplex VRF feature which does exactly what you
> require. Platform support for this is limited..
>
> oli
>
More information about the cisco-bba
mailing list