<div>I was reading through the Netiron user guide and came across the following;</div>
<div> </div>
<div><font face="FranklinGothic-Book" size="2"><font face="FranklinGothic-Book" size="2">
<p align="left">You cannot enable any of the following features on the interface if an ACL is already applied to</p>
<p align="left">that interface:</p></font></font><font face="FranklinGothic-Book">
<p align="left">• </p></font><font face="FranklinGothic-Book" size="2"><font face="FranklinGothic-Book" size="2">ACL-based rate limiting</font></font><font face="FranklinGothic-Book">
<p align="left">• </p></font><font face="FranklinGothic-Book" size="2"><font face="FranklinGothic-Book" size="2">Policy-based routing (PBR)</font></font><font face="FranklinGothic-Book">
<p align="left">• </p></font><font face="FranklinGothic-Book" size="2"><font face="FranklinGothic-Book" size="2">VLAN ID Translation or Inner VLAN ID translation feature
<p align="left">IP inbound and L2 inbound ACLs are mutually exclusive on the NetIron MLX and NetIron XMR,</p>
<p align="left">but both may be bound to the same port on the NetIron CES and NetIron CER. IP outbound and</p>
<p>L2 outbound ACLs are mutually exclusive on all platforms.</p>
<p> </p>
<p>This is very limiting, how is everyone getting around this limitation?</p>
<p> </p>
<p>harbor235 ;}</p>
<p> </p></font></font></div>