vlan maps and trunks

From: ccie2be (ccie2be@nyc.rr.com)
Date: Tue Dec 21 2004 - 13:37:07 GMT-3


Hi guys,

I never tested this so I can't say for sure, but I'm wondering

if a vlan map will filter as expected frames coming in from a trunk.

Simple example:

Assume the payroll server is in vlan 10 and connected to Cat-1. Also, assume

only hosts a, b and c are allowed access to this payroll server but there are
other hosts in

vlan 10 some of which are connected to Cat-1 and some of which are connected
to Cat-2.

Cat-1 is configured to support ip routing and is connected to Cat-2 by a trunk
which allows all vlan's.

If I configure the following vlan map, will this prevent all access to the
payroll server except from

hosts a, b and c?

access-list 1 permit host a
access-list 1 permit host b
access-list 1 permit host c

vlan access-map PAYROLL
match ip address 1
action forward

vlan filter PAYROLL vlan-list 10

TIA, Tim



This archive was generated by hypermail 2.1.4 : Mon Jan 03 2005 - 10:31:29 GMT-3