Chapter 16
Configuring Access Control
Applying Cisco IOS ACLs and VACLs on VLANs
This section describes how to apply Cisco IOS ACLs and VACLs to the VLAN for bridged packets,
routed packets, and multicast packets.
These sections show how ACLs and VACLs are applied:
•
•
•
Bridged Packets
Figure 16-1
are applied to the input VLAN.
Figure 16-1 Applying ACLs on Bridged Packets
Host A
(VLAN 10)
Routed Packets
Figure 16-2
routed/Layer 3-switched packets, the ACLs are applied in the following order:
1.
2.
3.
4.
78-13315-02
Bridged Packets, page 16-7
Routed Packets, page 16-7
Multicast Packets, page 16-8
shows how an ACL is applied on bridged packets. For bridged packets, only Layer 2 ACLs
VACL
Bridged
Catalyst 6500 Series Switch
with PFC
shows how ACLs are applied on routed/Layer 3-switched packets. For
VACL for input VLAN
Input Cisco IOS ACL
Output Cisco IOS ACL
VACL for output VLAN
Catalyst 6000 Family Software Configuration Guide—Releases 6.3 and 6.4
Applying Cisco IOS ACLs and VACLs on VLANs
Host B
(VLAN 10)
16-7