Re: Reflexive Access - List on Cisco 3560 / 3750 switch

From: Sunil Modi <sunil.s.modi_at_gmail.com>
Date: Fri, 23 May 2014 13:50:57 -0700

Not sure if it's the same switch you're using but doesn't seem like it's
supported.

http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750x_3560x/softwar
e/release/12-2_53_se/configuration/guide/3750xscg/swacl.html

The switch does not support these Cisco IOS router ACL-related features:

b"Non-IP protocol ACLs (see Table
37-1<http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750x_3560x/so
ftware/release/12-2_53_se/configuration/guide/3750xscg/swacl.html#wp1034834>)
or bridge-group ACLs

b"IP accounting

b"Inbound and outbound rate limiting (except with QoS ACLs)

b"Reflexive ACLs or dynamic ACLs (except for some specialized dynamic ACLs
used by the switch clustering feature)

b"ACL logging for port ACLs and VLAN maps

On Fri, May 23, 2014 at 2:45 AM, ftt <femi0802_at_gmail.com> wrote:

> HI All,
>
> I configured the following reflexive ACL and it works on routers but
> doesn't work on cisco 3560 or 3750 switches running Advance Ip services
> image. The switches does accept all the commands.
>
> Is Reflexive ACL not supported on these platforms or are I missing
> something?
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
> *interface FastEthernetx/xip address 10.1.1.1 255.255.255.0ip access-group
> INBOUND inip access-group OUTBOUND outduplex autospeed auto!!ip access-list
> extended INBOUNDpermit ospf any anyevaluate MIRRORip access-list extended
> OUTBOUNDpermit tcp any any reflect MIRRORpermit icmp any any reflect
> MIRRORpermit udp any any reflect MIRRORdeny ip any any log!*
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
>
>
>
>
>
>
>

--
Sunil Modi
sunil.s.modi_at_gmail.com
616-889-6441
Blogs and organic groups at http://www.ccie.net
Received on Fri May 23 2014 - 13:50:57 ART

This archive was generated by hypermail 2.2.0 : Tue Jun 10 2014 - 13:43:09 ART