VLAN, ACL and crosswise communication

VLAN, ACL and crosswise communication

11 Reply
Re:VLAN, ACL and crosswise communication
Yesterday

  @GRL 

 

Thanks for the info.  When this thread first started (and because I don't use switch ACLs anymore), out of curiosity I ran a quick test to check packet behavior.  The setup was simple:

 

PC --->   Switch --->  Gateway

 

The two test VLANs pass through the switch, one on which the PC resides and another on which a NAS is located.  Neither are isolated, so I created a gateway rule to deny traffic between the two (similar to what the original poster had).  The PC could no longer communicate with the NAS.  Fine so far.

 

Adding the switch allow rules for the two VLANs to communicate did not help.  Again, this matched what was happening to the original poster.  His issue would not be solved by the switch ACLs alone.  He would need to have an SVI on each VLAN and use the switch as the gateway..  Hence, the reason for my original comments.  Perhaps I should have clarified things more.  Thanks again...

 

 

 

 

 

1x ER7406 1x OC300 4x SG2008 1x EAP610 3x EAP650-Desktop
  0  
  0  
#12
Options