RE: vacl with implicit drop

From: Joseph L. Brunner <joe_at_affirmedsystems.com>
Date: Tue, 2 Oct 2012 08:24:52 +0000

Imran,

If you google vacl AAAA and 4242 you'll find the lsap types you need to permit in your vacl to allow the layer 2 stuff - IF your vacl cant allow permit any.

Here is the best link I found quickly to cover this topic

http://cauew.blogspot.com/2008/08/vacl-vlan-maps-mac-acl.html

-----Original Message-----
From: nobody_at_groupstudy.com [mailto:nobody_at_groupstudy.com] On Behalf Of Imran Ali
Sent: Tuesday, October 02, 2012 3:18 AM
To: Cisco certification
Subject: vacl with implicit drop

Hi all,

when any task say allow in vlan 10 only traffic required in this lab .

 R1-----sw1========sw2------R2

in vacl we need to permit {apart from layer 3 protocols} ARP .

But what about STP , do we need to include stp also ? in valc .

i am not sure how stp for vlan 10 flows when vacl ends with implicit deny

Blogs and organic groups at http://www.ccie.net
Received on Tue Oct 02 2012 - 08:24:52 ART

This archive was generated by hypermail 2.2.0 : Thu Nov 01 2012 - 10:53:33 ART