[c-nsp] access list - vlan-access-map...no reply!!!

Oliver Boehmer (oboehmer) oboehmer at cisco.com
Tue Apr 11 04:57:37 EDT 2006


Vikas Sharma <mailto:vikassharmas at gmail.com> wrote on Tuesday, April 11,
2006 9:14 AM:

> Thanks Oliver,
> 
> I am using cat 6509 switches. Since I am in a CDMA network dial-up,
> it will be difficult for me to use mac access-list as lots of people
> are dialing in to my network. Moreover I do not want to stop all
> communication in the VLAN, I just wanted to stop packets on ports
> 135-139, 445 etc. Can VLAN-access-map help me to achieve the goal?    

yes, vlan access-map (VACL) are able to filter bridged/L2 traffic, check
out the configuration guide for your platform (Supervisor, IOS version),
for example
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat6000/122sx/swcg/v
acl.htm

	oli



More information about the cisco-nsp mailing list